Bug Reports
Complete

FlexGet's API demanded an interactive login for every request

FlexGet's API required an interactive browser login, so scripts and integrations calling it were redirected to a sign-in page instead of being served.

The provider carried a rule meant to exempt API paths from the sign-on gate, but the rule was not a valid expression. When it fails to compile the gateway discards the entire exemption list, so every path required a login. This had never worked in any version; it was a long-standing typo rather than a recent regression.

Corrected and verified that the API is exempt while the web interface stays protected.

0 Comments

Sign in to comment

No comments yet. Be the first to share your thoughts!