chore: add revocation endpoint to oauth well-known (#20561)

Was added to apps endpoints, but not the wider site ones. This is a site
wide oauth route
This commit is contained in:
Steven Masley
2025-10-29 16:44:53 -05:00
committed by GitHub
parent 9629d873fb
commit 54497f4f6b
7 changed files with 12 additions and 0 deletions
+3
View File
@@ -15435,6 +15435,9 @@ const docTemplate = `{
"type": "string"
}
},
"revocation_endpoint": {
"type": "string"
},
"scopes_supported": {
"type": "array",
"items": {
+3
View File
@@ -13989,6 +13989,9 @@
"type": "string"
}
},
"revocation_endpoint": {
"type": "string"
},
"scopes_supported": {
"type": "array",
"items": {
+1
View File
@@ -18,6 +18,7 @@ func GetAuthorizationServerMetadata(accessURL *url.URL) http.HandlerFunc {
AuthorizationEndpoint: accessURL.JoinPath("/oauth2/authorize").String(),
TokenEndpoint: accessURL.JoinPath("/oauth2/tokens").String(),
RegistrationEndpoint: accessURL.JoinPath("/oauth2/register").String(), // RFC 7591
RevocationEndpoint: accessURL.JoinPath("/oauth2/revoke").String(), // RFC 7009
ResponseTypesSupported: []string{"code"},
GrantTypesSupported: []string{"authorization_code", "refresh_token"},
CodeChallengeMethodsSupported: []string{"S256"},