From 42f484f733bf32e78dc1b9b68d3253d6ba5b9698 Mon Sep 17 00:00:00 2001 From: Ryan G <78384369+SpongeManiac@users.noreply.github.com> Date: Tue, 13 Jun 2023 15:50:12 -0700 Subject: [PATCH] Update tokens.cr --- src/invidious/helpers/tokens.cr | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/src/invidious/helpers/tokens.cr b/src/invidious/helpers/tokens.cr index 4dc9a256..71b14040 100644 --- a/src/invidious/helpers/tokens.cr +++ b/src/invidious/helpers/tokens.cr @@ -87,10 +87,10 @@ def validate_request(token, session, request, key, locale = nil) scopes = token["scopes"].as_a.map(&.as_s) scope = "" - if scopes.includes?("::") - scope = "#{request.method}::#{request.path.lchop("/api/v1/").lstrip("/")}" - else + if request.path.includes?("auth") scope = "#{request.method}:#{request.path.lchop("/api/v1/auth/").lstrip("/")}" + else + scope = "#{request.method}::#{request.path.lchop("/api/v1/").lstrip("/")}" end if !scopes_include_scope(scopes, scope) raise InfoException.new("Invalid scope")