Hi everyone,
I'm facing an issue with session management in Appwrite when using Google OAuth2 for authentication. Here's the problem:
When a user logs in via Google OAuth2, the session gets saved in the browser cookies. If the app is reinstalled, the session persists in the browser, and the user cannot re-login properly without first deleting the existing session. Calling deleteSession("current") requires the user to already be authenticated, which is not possible in this scenario because the user is no longer technically logged in due to the app being reinstalled. This creates a loop where:
I can't delete the session because the user isn't logged in. I can't log in again because the previous session is still active in the cookies. The user also cannot log in using a different Google account because the previous session prevents any new login attempts. I've tried using setSession("current") before calling deleteSession, but I still encounter the error: User (role: guests) missing scope (account).
Is there a way to delete the session without requiring the user to be logged in? Or is there a workaround to manage this properly?
Thanks in advance for any help or insights!
Recommended threads
- Auth broken after update from 1.8.0 to 1...
So ive been having issues creating, deleting or updating users on my appwrite instance after i updated from 1.8.0 to version 1.9.0. When trying to create a user...
- User Blocked - False Positive
Today I tried to log in to my cloud console and it said the user is blocked and I didn't even receive any email regarding this like what kind of violation is my...
- Magic Link woes/noob
Magic Link is working; it sends the link to my email. But the link itself always leads to "Page Not Found. The page you're looking for doesn't exist". Clicking ...