Hacktoberfest 2026: the issues maintainers tagged for October, open and beginner-friendly. Browse Hacktoberfest issues

OIDC admin login + CSRF for the gateway

Open
#8 1 comment 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
5/5
Estimated time
Over a week
Newbie friendliness
35/100
Issue type
Feature
Clarity
Mostly clear
Activity status
Quiet
Tech stack
go

Research direction

Start at the gateway admin authentication entry points that currently handle bootstrap tokens and bearer access. Trace how admin POSTs are routed, then determine the scope of OIDC/OAuth provider support, cookie sessions, and CSRF enforcement; done means GitHub, Google, and generic login flows work with secure httpOnly sessions and protected admin POSTs.

Written by the indexing model from the issue text.

Description

roadmap

Gateway admin is bootstrap-token + bearer only. Add OIDC/OAuth login (GitHub/Google/generic), httpOnly secure cookie session, CSRF on admin POSTs. Round 21 auth-first.

Dominant language
Go
Stars
0
Forks
0
PR merge metrics
No merged PRs in 30d

Getting set up

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from moul/workgraph

All issues in moul/workgraph

Similar issues

More Go issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.