Browse Source

Return access tokens' scopes, not hardcoded list

Emelia Smith 1 year ago
parent
commit
7b0a6060b2
1 changed files with 2 additions and 2 deletions
  1. 2 2
      app/Auth/BearerTokenResponse.php

+ 2 - 2
app/Auth/BearerTokenResponse.php

@@ -18,8 +18,8 @@ class BearerTokenResponse extends \League\OAuth2\Server\ResponseTypes\BearerToke
     protected function getExtraParams(AccessTokenEntityInterface $accessToken)
     {
         return [
-        	'created_at' => time(),
-        	'scope' => 'read write follow push'
+            'created_at' => time(),
+            'scope' => implode(' ', $accessToken->getScopes())
         ];
     }
 }