diff --git a/CHANGELOG.md b/CHANGELOG.md index dc58a0d..4cb9436 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -2,6 +2,16 @@ All notable changes to this project will be documented in this file. This project adheres to [Semantic Versioning](http://semver.org/). +## [1.0.2] - 2026-04-30 + +### Added +- OIDC: + - Include `email` and `profile` scopes in OIDC authentication requests. + +### Changed + +### Fixed + ## [1.0.1] - 2026-04-25 ### Added diff --git a/src/services/auth/oauth.ts b/src/services/auth/oauth.ts index a64b6d0..959e3ec 100644 --- a/src/services/auth/oauth.ts +++ b/src/services/auth/oauth.ts @@ -163,12 +163,14 @@ export async function startAuthFlow(username: string, returnUrl?: string | null) prompt: 'login', }); - const scope = - SCOPES && SCOPES.length > 0 - ? SCOPES - : scopes_supported?.includes('openid') - ? 'openid' - : ''; + let scope: string; + if (SCOPES && SCOPES.length > 0) { + scope = SCOPES; + } else if (scopes_supported?.includes('openid')) { + scope = ['openid', 'email', 'profile'].filter((s) => scopes_supported.includes(s)).join(' '); + } else { + scope = ''; + } if (scope) { params.set('scope', scope); }