- Change rolesClaim from "scope" to "roles" to match the custom claim injected by the Logto Custom JWT script - Add Phase 7b: configure Logto Custom JWT for access tokens that maps org roles (admin→server:admin, member→server:viewer) and global roles (platform-admin→server:admin) into a standard "roles" claim - Add additionalScopes field to OIDC config Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
27 KiB
27 KiB