1
0
Эх сурвалжийг харах

Return access tokens' scopes, not hardcoded list

Emelia Smith 1 жил өмнө
parent
commit
7b0a6060b2

+ 2 - 2
app/Auth/BearerTokenResponse.php

@@ -18,8 +18,8 @@ class BearerTokenResponse extends \League\OAuth2\Server\ResponseTypes\BearerToke
     protected function getExtraParams(AccessTokenEntityInterface $accessToken)
     {
         return [
-        	'created_at' => time(),
-        	'scope' => 'read write follow push'
+            'created_at' => time(),
+            'scope' => implode(' ', $accessToken->getScopes())
         ];
     }
 }