michaeljolley / awesum.io

awesum.io is a platform built to recognize those who have helped others in some way.
https://awesum.io
MIT License
3 stars 4 forks source link

AwesumIO Twitter App is requesting too many permissions #23

Closed Windos closed 4 years ago

Windos commented 4 years ago

When logging into awesum.io with Twitter, users are asked to hand over what looks to be almost full control of their accounts:

Twitter permissions

To my eye, nothing other than the three "See" permissions should be needed, and even then all three "See" ones probably aren't needed either.

michaeljolley commented 4 years ago

Thanks for reporting this @Windos! A quick change in our Twitter application settings and this is resolved. Users should now get the following:

image

@allcontributors please add @Windos for security

allcontributors[bot] commented 4 years ago

@MichaelJolley

I've put up a pull request to add @Windos! :tada: