Unsure at the moment what causes this, but it seems, googling around, that it's perhaps not specific to omniauth-slack, but I don't understand the problem well enough to say.
I think this happens because Slack does not always provide the state value if you come from their end, although I haven't been able to figure out a solution to that...
Unsure at the moment what causes this, but it seems, googling around, that it's perhaps not specific to
omniauth-slack
, but I don't understand the problem well enough to say.Stacktrace:
Other Omniauth issues related to CSRF:
omniauth/omniauth-github#37 omniauth/omniauth-oauth2#32 auth0/omniauth-auth0#49
Initializer code:
Versions: