Compare commits

...

4 Commits

Author SHA1 Message Date
Balázs Orbán
098f0a48ec Revert "chore: fix broken security link on Readme (#8710)"
This reverts commit a8985ab364.
2023-09-25 11:30:49 +02:00
Balázs Orbán
46d02f750d chore: only validate bugs reports for repro links 2023-09-25 11:26:56 +02:00
Trần Minh Quang
3fd0d04546 feat(providers): update LinkedIn to use OIDC (#8396)
Co-authored-by: Balázs Orbán <info@balazsorban.com>
2023-09-25 11:15:41 +02:00
Muhammad Salman
a8985ab364 chore: fix broken security link on Readme (#8710)
* fixed broken security link on npm docs

* Update packages/next-auth/README.md

---------

Co-authored-by: Thang Vu <hi@thvu.dev>
2023-09-25 08:02:19 +07:00
5 changed files with 36 additions and 22 deletions

View File

@@ -1,6 +1,6 @@
name: Bug report name: Bug report
description: Report an issue so we can improve description: Report an issue so we can improve
labels: [triage] labels: [triage, bug]
body: body:
- type: markdown - type: markdown
attributes: attributes:

View File

@@ -1,6 +1,6 @@
name: Bug report (Provider) name: Bug report (Provider)
description: Create a provider-specific report description: Create a provider-specific report
labels: [triage, providers] labels: [triage, bug, providers]
body: body:
- type: markdown - type: markdown
attributes: attributes:

View File

@@ -1,6 +1,6 @@
name: Bug report (Adapter) name: Bug report (Adapter)
description: Create an adapter-specific report description: Create an adapter-specific report
labels: [triage, adapters] labels: [triage, bug, adapters]
body: body:
- type: markdown - type: markdown
attributes: attributes:

View File

@@ -14,10 +14,11 @@ jobs:
runs-on: ubuntu-latest runs-on: ubuntu-latest
steps: steps:
- name: Nissuer - name: Nissuer
uses: balazsorban44/nissuer@1.3.5 uses: balazsorban44/nissuer@1.5.0
with: with:
label-area-prefix: "" label-area-prefix: ""
label-area-section: "[Provider|Adapter] type(.*)### Environment" label-area-section: "[Provider|Adapter] type(.*)### Environment"
label-comments: '{ "incomplete": ".github/invalid-reproduction.md" }' label-comments: '{ "incomplete": ".github/invalid-reproduction.md" }'
reproduction-link-section: "### Reproduction URL(.*)### Describe the issue" reproduction-link-section: "### Reproduction URL(.*)### Describe the issue"
reproduction-invalid-label: "invalid reproduction" reproduction-invalid-label: "invalid reproduction"
reproduction-issue-labels: "bug"

View File

@@ -8,17 +8,22 @@
* *
* @module providers/linkedin * @module providers/linkedin
*/ */
import type { OAuthConfig, OAuthUserConfig } from "./index.js" import type { OIDCConfig, OIDCUserConfig } from "./index.js"
export interface LinkedInProfile { /** @see https://learn.microsoft.com/en-us/linkedin/consumer/integrations/self-serve/sign-in-with-linkedin-v2#response-body-schema */
sub: string export interface LinkedInProfile extends Record<string, any> {
name: string sub: string,
email: string name: string,
picture: string given_name: string,
family_name: string,
picture: string,
locale: string,
email: string,
email_verified: boolean
} }
/** /**
* Add Linkedin login to your page. * Add LinkedIn login to your page.
* *
* ### Setup * ### Setup
* *
@@ -30,27 +35,27 @@ export interface LinkedInProfile {
* #### Configuration * #### Configuration
*```js *```js
* import Auth from "@auth/core" * import Auth from "@auth/core"
* import Linkedin from "@auth/core/providers/linkedin" * import LinkedIn from "@auth/core/providers/linkedin"
* *
* const request = new Request(origin) * const request = new Request(origin)
* const response = await Auth(request, { * const response = await Auth(request, {
* providers: [Linkedin({ clientId: LINKEDIN_CLIENT_ID, clientSecret: LINKEDIN_CLIENT_SECRET })], * providers: [LinkedIn({ clientId: LINKEDIN_CLIENT_ID, clientSecret: LINKEDIN_CLIENT_SECRET })],
* }) * })
* ``` * ```
* *
* ### Resources * ### Resources
* *
* - [Linkedin OAuth documentation](https://docs.microsoft.com/en-us/linkedin/shared/authentication/authorization-code-flow) * - [LinkedIn OAuth documentation](https://docs.microsoft.com/en-us/linkedin/shared/authentication/authorization-code-flow)
* - [Linkedin app console](https://www.linkedin.com/developers/apps/) * - [LinkedIn app console](https://www.linkedin.com/developers/apps/)
* *
* ### Notes * ### Notes
* *
* By default, Auth.js assumes that the Linkedin provider is * By default, Auth.js assumes that the LinkedIn provider is
* based on the [OAuth 2](https://www.rfc-editor.org/rfc/rfc6749.html) specification. * based on the [OIDC](https://openid.net/specs/openid-connect-core-1_0.html) specification.
* *
* :::tip * :::tip
* *
* The Linkedin provider comes with a [default configuration](https://github.com/nextauthjs/next-auth/blob/main/packages/core/src/providers/linkedin.ts). * The LinkedIn provider comes with a [default configuration](https://github.com/nextauthjs/next-auth/blob/main/packages/core/src/providers/linkedin.ts).
* To override the defaults for your use case, check out [customizing a built-in OAuth provider](https://authjs.dev/guides/providers/custom-provider#override-default-options). * To override the defaults for your use case, check out [customizing a built-in OAuth provider](https://authjs.dev/guides/providers/custom-provider#override-default-options).
* *
* ::: * :::
@@ -66,14 +71,22 @@ export interface LinkedInProfile {
* ::: * :::
*/ */
export default function LinkedIn<P extends LinkedInProfile>( export default function LinkedIn<P extends LinkedInProfile>(
options: OAuthUserConfig<P> options: OIDCUserConfig<P>
): OAuthConfig<P> { ): OIDCConfig<P> {
return { return {
id: "linkedin", id: "linkedin",
name: "LinkedIn", name: "LinkedIn",
type: "oidc", type: "oidc",
client: { client: { token_endpoint_auth_method: "client_secret_post" },
token_endpoint_auth_method: "client_secret_post", issuer: "https://www.linkedin.com",
jwks_endpoint: "https://www.linkedin.com/oauth/openid/jwks",
async profile(profile) {
return {
id: profile.sub,
name: profile.name,
email: profile.email,
image: profile.picture
}
}, },
style: { style: {
logo: "/linkedin.svg", logo: "/linkedin.svg",