Updated isJWT so it's conforming to specs #906
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Updated the regular expression for isJWT so it's conforming to the specs.
#609 contained a regular expression where the signature part was required. However, RFC 7519 states:
Note that the code in the PR doesn't check if "alg" is actually "none" when the signature is missing, as it doesn't decode the JWT... I'm happy to implement that if you think I should, however.
I have also added some stricter checks to ensure that the base64 tokens are valid.