FriendsOfSymfony / FOSOAuthServerBundle

A server side OAuth2 Bundle for Symfony
1.09k stars 451 forks source link

Prefix roles assigned by scope #583

Open dkarlovi opened 6 years ago

dkarlovi commented 6 years ago

Scope foo becomes ROLE_OAUTH_FOO instead of ROLE_FOO.

DPerkunas commented 5 years ago

+1 for this. I like this idea. This prevents accidents, such as granting someone a role of ROLE_DELETE, in a large application, or ROLE_ADMIN.