diff -r 861cae17abda -r 6cb4d10f0b8b web/callback.php --- /dev/null Thu Jan 01 00:00:00 1970 +0000 +++ b/web/callback.php Wed Apr 06 16:26:16 2011 +0200 @@ -0,0 +1,34 @@ +getAccessToken($_GET, unserialize($_SESSION['TWITTER_REQUEST_TOKEN'])); + $_SESSION['TWITTER_ACCESS_TOKEN'] = serialize($token); + + /** + * Now that we have an Access Token, we can discard the Request Token + */ + $_SESSION['TWITTER_REQUEST_TOKEN'] = null; + + /** + * With Access Token in hand, let's try accessing the client again + */ + header('Location: ' . URL_ROOT ); +} else { + /** + * Mistaken request? Some malfeasant trying something? + */ + exit('Invalid callback request. Oops. Sorry.'); +}