Periodically refresh JWT public key set#88
Conversation
|
Important Review skippedAuto reviews are disabled on base/target branches other than the default branch. Please check the settings in the CodeRabbit UI or the You can disable this status message by setting the ✨ Finishing touches🧪 Generate unit tests (beta)
Tip 📝 Customizable high-level summaries are now available in beta!You can now customize how CodeRabbit generates the high-level summary in your pull requests — including its content, structure, tone, and formatting.
Example instruction:
Note: This feature is currently in beta for Pro-tier users, and pricing will be announced later. Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
|
Trivy has completed a full security repository scan ✅ You can find the analysis results for this PR branch on this overview.
|
jakipatryk
left a comment
There was a problem hiding this comment.
LGTM, just one suggestion to lower slightly the refresh time.
|
Trivy has completed a full security repository scan ✅ You can find the analysis results for this PR branch on this overview.
|
a0295d4
into
feature/65-token-verification-with-previous-token
Overview
Introduces a mechanism to automatically refresh JWT public keys in the
HandlerTokenclass when they become stale, improving security. The refresh logic is triggered before decoding JWTs.Release Notes
Related
Closes #87