django-oidc-provider icon indicating copy to clipboard operation
django-oidc-provider copied to clipboard

Send standard claims in token view

Open mastnym opened this issue 1 year ago • 0 comments

If sending claims in token view is allowed in settings, there is a piece of code which checks if there are any extra scope claims. If so, it sends these, otherwise it sends standard claims: https://github.com/juanifioren/django-oidc-provider/blob/master/oidc_provider/lib/utils/token.py#L57

On the other hand, at userinfo endpoint, standard claims are sent automatically and extra claims are added if defined. IMHO, same scenario should be applied to token endpoint as well. Send standard claims and if there are extra claims defined, send those too.

mastnym avatar Jun 12 '23 09:06 mastnym