Conversation
Advertise the ePDS `epds_skip_consent_on_signup` client-metadata extension so brand-new accounts skip the "Authorize your account" consent screen and land straight in the app. This is the only client-side change required. It takes effect once the certified.one PDS runs with PDS_SIGNUP_ALLOW_CONSENT_SKIP=true and this client_id is on its PDS_OAUTH_TRUSTED_CLIENTS allowlist (operator-side config, not part of this repo).
feat(auth): skip ePDS consent screen on first-time sign-up
Contributor
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
Important Review skippedDraft detected. Please check the settings in the CodeRabbit UI or the ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Pro Plus Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
holkexyz
marked this pull request as ready for review
August 12, 2026 15:05
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Single change on top of #241: adds the ePDS
epds_skip_consent_on_signup: trueextension to Certified's OAuth client metadata at/.well-known/oauth-client-metadata.This removes the "Authorize your account" consent screen first-time users hit during sign-up, so new accounts land straight in the app. It matters for apps that delegate sign-in to the
certsprovider (e.g. the GainForest frontend), which currently bounce users through certified.one's OAuth flow into the ePDS stock consent screen.Originally opened as #227 and closed unmerged; revived via #242 onto
staging.Risk
Inert until the PDS side is configured. The flag is only honoured when the ePDS runs with
PDS_SIGNUP_ALLOW_CONSENT_SKIP=trueand thisclient_idis on itsPDS_OAUTH_TRUSTED_CLIENTSallowlist. Until both hold, the consent screen behaves exactly as it does today.Changes
src/app/.well-known/oauth-client-metadata/route.ts— 5 lines added, no other files touched.🤖 Generated with Claude Code