Skip to content

Conversation

@drgrice1
Copy link
Member

@drgrice1 drgrice1 commented Jan 9, 2026

This module is broken and I am rather certain it can't even be fixed. It uses an archaic and rather unsecure approach of trying to read cookies from Moodle and using that for authentication. In most cases this would be a cross domain cookie and most likely impossible to read. This approach might have worked a long time ago, but cookie's have changed a lot since then.

This module is broken and I am rather certain it can't even be fixed.
It uses an archaic and rather unsecure approach of trying to read
cookies from Moodle and using that for authentication. In most cases
this would be a cross domain cookie and most likely impossible to read.
This approach might have worked a long time ago, but cookie's have
changed a lot since then.
@pstaabp pstaabp merged commit 6d54327 into openwebwork:develop Jan 13, 2026
2 checks passed
@drgrice1 drgrice1 deleted the remove-moodle-authen branch January 13, 2026 13:21
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants