Skip to content

fix(developer): refresh account sessions safely - #960

Open
kevincador wants to merge 1 commit into
masterfrom
fix/developer-session-refresh
Open

kevincador wants to merge 1 commit into
masterfrom
fix/developer-session-refresh

Conversation

@kevincador

Copy link
Copy Markdown
Contributor

Refresh developer portal sessions before sending authenticated requests, without rotating the same account’s tokens concurrently.

Refreshes run on demand and are coordinated per account across tabs. Failed refreshes preserve the session and apply a retry cooldown. Authentication timeouts cover response bodies, and delayed 401s cannot invalidate a newer session.

The account panel updates automatically and replaces manual refresh controls with one action: Log out normally, or Sign in again after a session error.

Validation

  • 264 tests passed.
  • Formatting, type-checking, and production build passed.
  • Local multi-account manual smoke test done.

Risk

Cross-tab coordination requires Web Locks. The response-buffering adapter relies on the installed OIDC client's timeout marker and is covered by integration tests.

@chatgpt-codex-connector

chatgpt-codex-connector Bot commented Sep 24, 2026 •

Copy link
Copy Markdown

Codex Review Summary

This comment shows the latest Codex review activity on this pull request.

Review Status Commit Review trigger
📝 Code Review ✅ Completed 2026-09-24T09:50:41.156064Z cc585b3 PR opened
ℹ️ About Codex in GitHub

Your team has set up Codex to review pull requests in this repo. Reviews are triggered when you

  • Open a pull request for review
  • Mark a draft as ready
  • Comment "@codex review" or "@codex security review".

Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant