RocketChat / Rocket.Chat.Apps-engine

The Rocket.Chat Apps engine and definitions.

Home Page:https://rocketchat.github.io/Rocket.Chat.Apps-engine/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

[Enchancement] ClientSecret Input Under App Settings Must be of SettingType Password

Nabhag8848 opened this issue · comments

What ?

  • When implementing OAuth2 with Apps by default we get two input fields of SettingType STRING (Client Id and Client Secret) but as the Client Secret is sensitive piece of information. it is meant to be kept confidential. Thus, having a SettingType Password will provide user an security from unauthorized individuals from viewing the secret over the shoulder or capturing it on screen recordings.

Screenshot

Screenshot from 2023-05-30 17-23-39

Further Comments

  • Interested in Contributing, waiting for confirmation.

Closed as duplicate #238