Skip to main content
← Back to list
01Issue
BugShippedSwamp CLIPublic
Assigneeshammz

Relationships

#2378 auth server-login hangs after device-flow authorization is approved in browser; never completes or times out

Opened by hammz · 9/22/2026· Shipped 9/22/2026

Description

swamp auth server-login against a swamp serve instance hangs after the user has finished authorizing in the browser. The CLI prints the verification code and opens the browser. The user finishes the device authorization at swamp-club.com and gets sent back, but the CLI never picks up the token. It doesn't finish, doesn't show an error, and doesn't time out. The process has to be killed manually.

Steps to reproduce

  1. Run:
    $ swamp auth server-login --server https://ops.swamp-club.com
    Discovering server auth mode...
    
    Your verification code: XXXXXXXX
    
    Open: https://swamp-club.com/device?user_code=XXXXXXXX
    Opening browser...
  2. In the browser that opens, enter or confirm the code and finish authorization. The browser flow succeeds and returns.
  3. Go back to the terminal.

Nothing is printed after Opening browser..., even though authorization succeeded. The command stays in this state indefinitely.

Expected behavior

  • After the browser authorization is approved, the CLI's next token poll should get the token, save the credential, and exit successfully.
  • Separately, the CLI should never wait forever. It should stop polling and exit with an error when the device code expires (expires_in), or after some other overall timeout.
  • If the token endpoint returns an error, a non-OAuth response, or the connection drops, the CLI should report it and exit instead of silently waiting.
  • While it waits, the CLI should print something like "Waiting for authorization…" so the user knows it is polling.

Actual behavior

It hangs with no output after a successful browser authorization. There is no timeout and no error.

  • #1899 / #1938: swamp serve panics when OAuth device-flow authorization succeeds (the 200 branch). If the server's token endpoint still fails on the success path, the CLI poll could be left waiting on a response that never comes. Even so, the CLI should time out instead of hanging.

Environment

  • swamp version: 20260922.213037.0-sha.eae73d0f
  • OS: Linux (CachyOS, kernel 7.2.6)
  • Server: https://ops.swamp-club.com (OAuth device flow via swamp-club.com)
02Bog Flow
✓OPEN✓TRIAGED✓IN PROGRESS✓SHIPPED+ 1 MOREASSIGNED+ 5 MOREREVIEW+ 7 MOREPR_MERGED+ 2 MORESESSION_SUMMARIZED

Shipped

9/22/2026, 11:39:58 PM

Click a lifecycle step above to view its details.

03Sludge Pulse
hammz assigned hammz9/22/2026, 10:11:54 PM

Sign in to post a ripple.