Symptom
- Personally Identifiable Information (PII) is exposed in the callback URL during social login using Facebook.
- The callback URL contains sensitive user data such as first name, last name, email, and other profile information.
- The issue persists even when the WebSDK configuration is set to `authFlow: redirect` and `redirectMethod: POST`.
- The callback method incorrectly appears as GET instead of POST.
Read more...
Environment
- SAP Customer Data Cloud
- Identity (ScreenSets / Policies / Schema)
Product
SAP Customer Data Cloud all versions
Keywords
pii exposure, social login, callback url, facebook, sap customer data cloud, authflow redirect, redirectmethod post, websdk configuration, sensitive data, privacy issue, gdpr compliance, redirectURL, gigya , KBA , CEC-PRO-RAS , RaaS (Screen-Sets, Site Policies, Schema) , Problem
About this page
This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).Search for additional results
Visit SAP Support Portal's SAP Notes and KBA Search.
SAP Knowledge Base Article - Preview