passport-facebook-token icon indicating copy to clipboard operation
passport-facebook-token copied to clipboard

Facebook Graph API doesn't require clientId and clientSecret

Open edwardanthony opened this issue 4 years ago • 0 comments

I use this library to fetch user profile data after I receive the access_token sent by the iOS app. Using this access_token, I can get the user profile using Facebook Graph API and find the matching user in my database.

Here's my concern though: Fetching data using Facebook Graph API can be accomplished without specifying clientId and clientSecret. Only access token is required.

I'm wondering if I missed something here, maybe I misread the Facebook Graph API documentation, and it does require clientId and clientSecret.

https://developers.facebook.com/docs/graph-api/using-graph-api

Can you give me a short explanation? It would be really helpful.

edwardanthony avatar Aug 08 '20 14:08 edwardanthony