From 3ca2334932602953988aeeb29da2d5eeeeed454e Mon Sep 17 00:00:00 2001 From: Kharec Date: Thu, 8 Jan 2026 06:16:01 +0100 Subject: [PATCH] feat: return rotated refresh token on refresh --- internal/services/session_service.go | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/internal/services/session_service.go b/internal/services/session_service.go index 4029a9a..3c6b392 100644 --- a/internal/services/session_service.go +++ b/internal/services/session_service.go @@ -71,7 +71,7 @@ func (s *SessionService) issueAuthResult(user *database.User) (*AuthResult, erro } func (s *SessionService) RefreshAccessToken(refreshToken string) (*AuthResult, error) { - accessToken, err := s.jwtService.RefreshAccessToken(refreshToken) + accessToken, newRefreshToken, err := s.jwtService.RefreshAccessTokenWithRotation(refreshToken) if err != nil { return nil, err } @@ -88,7 +88,7 @@ func (s *SessionService) RefreshAccessToken(refreshToken string) (*AuthResult, e return &AuthResult{ AccessToken: accessToken, - RefreshToken: refreshToken, + RefreshToken: newRefreshToken, User: sanitizeUser(user), }, nil }