[Fraud Protection] Pass authMethod=shortLivedAuthToken on OldDot→NewDot handover sign-ins#91751
Conversation
|
removing @flaviadefaria, no product change |
Reviewer Checklist
Screenshots/VideosAndroid: HybridAppAndroid: mWeb ChromeiOS: HybridAppiOS: mWeb SafariMacOS: Chrome / Safari |
|
🚧 @Valforte has triggered a test Expensify/App build. You can view the workflow run here. |
|
🧪🧪 Use the links below to test this adhoc build on Android, iOS, and Web. Happy testing! 🧪🧪
|
|
✋ This PR was not deployed to staging yet because QA is ongoing. It will be automatically deployed to staging after the next production release. |
|
🚀 Deployed to staging by https://github.com/Valforte in version: 9.3.84-0 🚀
Bundle Size Analysis (Sentry): |
|
I reviewed the changes in this PR. The diff adds an internal These are purely internal/infrastructure changes — no user-facing features, UI elements, settings, or workflows are affected. No help site changes are required. @cristipaval, no docs PR is needed for this change since it's entirely internal. Let me know if you have any questions. |
|
🚀 Deployed to staging by https://github.com/Valforte in version: 9.3.86-0 🚀
Bundle Size Analysis (Sentry): |
|
I reviewed the changes in this PR. It adds an internal
No help site changes are required. This is purely internal infrastructure for fraud detection session tagging — it does not change any user-facing behavior, UI, settings, or features that would be documented on the help site. |
|
🚀 Deployed to staging by https://github.com/Valforte in version: 9.3.88-0 🚀
Bundle Size Analysis (Sentry): |
|
I reviewed the changes in this PR. The diff adds a These are purely internal authentication changes — no user-facing features, UI, settings, or workflows are affected. No help site documentation updates are required. @cristipaval, since no docs changes are needed, no help site PR was created. If you believe documentation should be updated, please let me know and I can create one. |
|
🚀 Deployed to production by https://github.com/mountiny in version: 9.3.88-2 🚀
|
Explanation of Change
Tags NewDot sessions bootstrapped from an OldDot handover with
authentication=shortLivedAuthTokenfor GroupIB.Fixed Issues
https://github.com/Expensify/Expensify/issues/632349
PROPOSAL:
Tests
authenticationattribute set toshortLivedAuthTokenOffline tests
QA Steps
// TODO: These must be filled out, or the issue title must include "[No QA]."
Same as Tests. Feel free to ping @cristipaval to QA it.
PR Author Checklist
### Fixed Issuessection aboveTestssectionOffline stepssectionQA stepssectioncanBeMissingparam foruseOnyxtoggleReportand notonIconClick)src/languages/*files and using the translation methodSTYLE.md) were followedAvatar, I verified the components usingAvatarare working as expected)StyleUtils.getBackgroundAndBorderStyle(theme.componentBG))npm run compress-svg)Avataris modified, I verified thatAvataris working as expected in all cases)Designlabel and/or tagged@Expensify/designso the design team can review the changes.ScrollViewcomponent to make it scrollable when more elements are added to the page.mainbranch was merged into this PR after a review, I tested again and verified the outcome was still expected according to theTeststeps.Screenshots/Videos
Android: Native
Android: mWeb Chrome
iOS: Native
iOS: mWeb Safari
MacOS: Chrome / Safari