Skip to content

Commit 63db322

Browse files
committed
Set Cache-Control: no-store
1 parent 7b81b4f commit 63db322

File tree

4 files changed

+8
-0
lines changed

4 files changed

+8
-0
lines changed

src/server/auth/handlers/authorize.ts

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -52,6 +52,8 @@ export function authorizationHandler({ provider, rateLimit: rateLimitConfig }: A
5252

5353
// Define the handler
5454
router.all("/", async (req, res) => {
55+
res.setHeader('Cache-Control', 'no-store');
56+
5557
let client_id, redirect_uri;
5658
try {
5759
const data = req.method === 'POST' ? req.body : req.query;

src/server/auth/handlers/register.ts

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -63,6 +63,8 @@ export function clientRegistrationHandler({
6363
}
6464

6565
router.post("/", async (req, res) => {
66+
res.setHeader('Cache-Control', 'no-store');
67+
6668
let clientMetadata;
6769
try {
6870
clientMetadata = OAuthClientMetadataSchema.parse(req.body);

src/server/auth/handlers/revoke.ts

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -48,6 +48,8 @@ export function revocationHandler({ provider, rateLimit: rateLimitConfig }: Revo
4848
router.use(authenticateClient({ clientsStore: provider.clientsStore }));
4949

5050
router.post("/", async (req, res) => {
51+
res.setHeader('Cache-Control', 'no-store');
52+
5153
let revocationRequest;
5254
try {
5355
revocationRequest = OAuthTokenRevocationRequestSchema.parse(req.body);

src/server/auth/handlers/token.ts

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -59,6 +59,8 @@ export function tokenHandler({ provider, rateLimit: rateLimitConfig }: TokenHand
5959
router.use(authenticateClient({ clientsStore: provider.clientsStore }));
6060

6161
router.post("/", async (req, res) => {
62+
res.setHeader('Cache-Control', 'no-store');
63+
6264
let grant_type;
6365
try {
6466
({ grant_type } = TokenRequestSchema.parse(req.body));

0 commit comments

Comments
 (0)