Skip to content
Discussion options

You must be logged in to vote

I'm inclined to answer "yes", but it could still depend on where this short-circuit is happening. It's definitely a good approach to first verify whether there is a valid authorization context before using the return URL value, but I'm still confused why you had to add this short-circuit logic.

When the authorize endpoint redirects the user back to the login UI, it most likely had a good reason to do so.

Replies: 1 comment 7 replies

Comment options

You must be logged in to vote
7 replies
@musaDiplomat
Comment options

@wcabus
Comment options

@musaDiplomat
Comment options

@wcabus
Comment options

Answer selected by musaDiplomat
@musaDiplomat
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants