Update OAuth2-Front-Approach.md

This commit is contained in:
Ste Vaidis 2024-12-15 19:18:24 +02:00
parent 1e50fd8a0f
commit f9af5b89ba

View File

@ -43,7 +43,7 @@ A way for the `user` to tell `google` to give an access token to `xorismesiti.gr
1. A button "Login with Google" redirects the user to the Google's authorization endpoint `accounts.google.com/o/oauth2/v2/auth`
2. After the redirection, the user will log in to Google and grant permissions (if they havent already).
3. Google will redirect the user back to your redirect_uri `https://xorismesiti.gr/callback` with an authorization code `?code=`
3. Google will redirect the user back to your redirect_uri `https://xorismesiti.gr/callback` with an authorization code `?code=ABC123`
*Security: the state string should be validated upon receiving the response from Google, as it ensures that the response corresponds to the request.*
@ -277,7 +277,7 @@ app.listen(3000, () => {
<br>
### 2.3 Front
### 2.3 Frontend
The frontend gets the tokens from the backend response,