awslabs / cognito-at-edge

Serverless authentication solution to protect your website or Amplify application
Apache License 2.0
191 stars 57 forks source link

feat: update scope cookie to accurately reflect user scopes in access… #102

Open ncarchar opened 3 months ago

ncarchar commented 3 months ago

… token

Issue #101

Description of changes: Updates the tokenScopesString cookie value to accurately reflect the scopes in the user's access token. The access token is verified and parsed using the _jwtVerifier. To achieve this, tokenUse was moved from the constructor to the verify calls. I've forked the repository and deployed the changes to a running Lambda@Edge, confirming that everything works as expected. Tests have been updated accordingly.

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.