Skip to content

Conversation

Gzerox
Copy link
Contributor

@Gzerox Gzerox commented Jul 24, 2025

Hello !

This PR introduces a first draft implementation for issue #591.

The proposed feature enables automatic refresh token rotation, which: when enabled, allows clients to maintain continuous access without being forced to re-authenticate, as long as they remain active.
This behavior can significantly improve the user experience, especially for consumer-facing applications.

That said, depending on the sensitivity of the application, this may introduce security trade-offs that should be carefully evaluated.

More details and rationale are discussed in the linked issue.

Feedback and suggestions are welcome!

@andrechristikan andrechristikan deleted the branch andrechristikan:development July 25, 2025 06:30
@andrechristikan
Copy link
Owner

I haven't reviewed your changes yet, and I accidentally removed the development branch by mistake :(

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants