Skip to content

#096: Implement Secure OAuth2 Social Login Integration Expansion with MFA Enforcement #28

Description

@bakarezainab

#096: Implement Secure OAuth2 Social Login Integration Expansion with MFA Enforcement

Category: [BACKEND]
Difficulty: ● HARD
Tags: oauth2, auth, passport, google, github, security

Description

Expand the authentication system to support OAuth2 social login (Google and GitHub). This allows users to register and log in to the PayD platform using their existing social accounts, streamlining the onboarding process.

Advanced / Production Requirements (HARD Upgrade)

Expand social login to enforce organization security policies. When an admin logs in via social authentication, check if organization-level MFA is enabled, and enforce second-factor prompts. Log all social authentication attempts for security auditing.

Acceptance Criteria

  • Configure Passport.js strategies for Google and GitHub.
  • Implement redirection and callback handlers.
  • Link social accounts to existing database user profiles.
  • Ensure that MFA (Multi-Factor Authentication) still applies for highly-sensitive actions even when using social login.
  • Verify organization-level MFA requirements after social auth callback.
  • Log security events (login success/fail, user-agents, IPs) to central audit log.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions