diff -r 6e8930a1b8f7 -r 32898b2c8e9c web/callback.php --- /dev/null Thu Jan 01 00:00:00 1970 +0000 +++ b/web/callback.php Wed Apr 06 16:45:22 2011 +0200 @@ -0,0 +1,34 @@ +getAccessToken($_GET, unserialize($_SESSION['TWITTER_REQUEST_TOKEN'])); + $_SESSION['TWITTER_ACCESS_TOKEN'] = serialize($token); + + /** + * Now that we have an Access Token, we can discard the Request Token + */ + $_SESSION['TWITTER_REQUEST_TOKEN'] = null; + + /** + * With Access Token in hand, let's try accessing the client again + */ + header('Location: ' . URL_ROOT ); +} else { + /** + * Mistaken request? Some malfeasant trying something? + */ + exit('Invalid callback request. Oops. Sorry.'); +}