Skip to content

fix: include openid in CLI login OAuth scopes - #22

Merged
kody-bot merged 1 commit into
mainfrom
cursor/fix-oauth-openid-scope-8595
Oct 3, 2026
Merged

kody-bot merged 1 commit into
mainfrom
cursor/fix-oauth-openid-scope-8595

Conversation

@kentcdodds

Copy link
Copy Markdown
Owner

Summary

CLI login OAuth sessions were missing the openid scope (defaultScopes was profile email only). MCP whoami / search require openid profile email, so logged-in users hit insufficient_scope while execute --local still worked via CapabilityProxy.

Changes

  • Add openid to defaultScopes as ['openid', 'profile', 'email'] (CIMD client metadata + auth() scope).
  • Assert login/CIMD requested scopes include openid.
  • Soften MCP whoami/search errors: when insufficient_scope and the stored session lacks openid, hint kody logout && kody login.

Migration note (for release notes)

Existing login sessions need kody logout && kody login (or re-auth) to pick up openid.

Risk

Low — scoped bug fix to OAuth default scopes + a small error hint.

Open in Web Open in Cursor 

MCP whoami and search require openid profile email; defaultScopes only
requested profile email, so fresh login sessions hit insufficient_scope.

Existing login sessions need `kody logout && kody login` (or re-auth) to
pick up openid. whoami/search now hint that re-login when the stored
scope lacks openid and the server returns insufficient_scope.

Co-authored-by: Kent C. Dodds <me+github@kentcdodds.com>
@kody-bot
kody-bot marked this pull request as ready for review October 3, 2026 07:41
@kentcdodds

Copy link
Copy Markdown
Owner Author

bugbot run

@cursor

cursor Bot commented Oct 3, 2026

Copy link
Copy Markdown

Skipping Bugbot: Bugbot is disabled for this repository. Visit the Bugbot dashboard to update your settings.

@kody-bot
kody-bot merged commit b631e58 into main Oct 3, 2026
5 checks passed
@kody-bot
kody-bot deleted the cursor/fix-oauth-openid-scope-8595 branch October 3, 2026 07:42
@github-actions

github-actions Bot commented Oct 3, 2026

Copy link
Copy Markdown

🎉 This PR is included in version 1.10.2 🎉

The release is available on:

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants