Power-Trade / api-docs

0 stars 1 forks source link

Web app doesn't automatically log user out if web page is "API Keys" or "Sub-Accounts" [Security] #52

Open laisee opened 6 months ago

laisee commented 6 months ago

User session should timeout on Web app for all web pages - but it leaves user logged-in when on API Keys and Sub-Accounts pages

API Keys page left logged in after 30+ mins on no activity

Screenshot 2024-05-17 at 12 36 41

likewise for user sub-accounts page

Screenshot 2024-05-17 at 13 02 13
laisee commented 2 months ago

tested again and same issue still exists.