Hi everyone,
I'm facing an issue with session management in Appwrite when using Google OAuth2 for authentication. Here's the problem:
When a user logs in via Google OAuth2, the session gets saved in the browser cookies. If the app is reinstalled, the session persists in the browser, and the user cannot re-login properly without first deleting the existing session. Calling deleteSession("current") requires the user to already be authenticated, which is not possible in this scenario because the user is no longer technically logged in due to the app being reinstalled. This creates a loop where:
I can't delete the session because the user isn't logged in. I can't log in again because the previous session is still active in the cookies. The user also cannot log in using a different Google account because the previous session prevents any new login attempts. I've tried using setSession("current") before calling deleteSession, but I still encounter the error: User (role: guests) missing scope (account).
Is there a way to delete the session without requiring the user to be logged in? Or is there a workaround to manage this properly?
Thanks in advance for any help or insights!
Recommended threads
- Local Serverless Function Testing: Are D...
I have followed the instructions to get the CLI working, and have been able to log-in, initialize my project, and created a simple Python function, which calls ...
- Update user email using OTP
Hi, I am trying to implement email update using OTP, there is not password associated with the account. One solution I found online is creating appwrite functio...
- Magic Link token automatically consumed
Hi, I'm using the Magic Link auth system with Appwrite Cloud and I'm running into huge issues getting users to log in successfully. About 9 times out of 10, th...