department-of-veterans-affairs / va-mobile-app

"If VA were a company, it would have a flagship mobile app."
https://department-of-veterans-affairs.github.io/va-mobile-app/
17 stars 2 forks source link

BUG - sev-3 - All - If app user opens SSO webview, and stays logged in past website session expiration, SSO no longer works #9833

Open TKDickson opened 1 week ago

TKDickson commented 1 week ago

What happened?

A user who:

The webview will not be logged in (SSO fails).

Specs:

Steps to Reproduce

See description

Desired behavior

Arguably SSO should still work (their app session is still valid)/SSO should be refreshed somehow

Acceptance Criteria

Bug Severity - BE SURE TO ADD THE SEVERITY LABEL

See [Bug Tracking](https://department-of-veterans-affairs.github.io/va-mobile-app/docs/QA#issue-severity) for details on severity levels

Linked to Story

Screen shot(s) and additional information

Full JSON response for services related to issue (expand/collapse)

Ticket Checklist

TKDickson commented 1 week ago

Found while testing & caused by #9286. Does not hold up release (per stakeholder signoff in demo), especially since SSO is going out with the feature flag turned off.