You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

AppInstallationToken.java 2.7KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889
  1. /*
  2. * SonarQube
  3. * Copyright (C) 2009-2024 SonarSource SA
  4. * mailto:info AT sonarsource DOT com
  5. *
  6. * This program is free software; you can redistribute it and/or
  7. * modify it under the terms of the GNU Lesser General Public
  8. * License as published by the Free Software Foundation; either
  9. * version 3 of the License, or (at your option) any later version.
  10. *
  11. * This program is distributed in the hope that it will be useful,
  12. * but WITHOUT ANY WARRANTY; without even the implied warranty of
  13. * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
  14. * Lesser General Public License for more details.
  15. *
  16. * You should have received a copy of the GNU Lesser General Public License
  17. * along with this program; if not, write to the Free Software Foundation,
  18. * Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301, USA.
  19. */
  20. package org.sonar.auth.github;
  21. import javax.annotation.concurrent.Immutable;
  22. import org.sonar.auth.github.security.AccessToken;
  23. import static java.util.Objects.requireNonNull;
  24. /**
  25. * Token that provides access to the Github API on behalf of
  26. * the Github organization that installed the Github App.
  27. *
  28. * It expires after one hour.
  29. *
  30. * IMPORTANT
  31. * Rate limit is 5'000 API requests per hour for the Github organization.
  32. * Two different Github organizations don't share rate limits.
  33. * Two different instances of {@link AppInstallationToken} of the same Github organization
  34. * share the same quotas (two calls from the two different instances consume
  35. * two hits).
  36. *
  37. * The limit can be higher than 5'000, depending on the number of repositories
  38. * and users present in the organization. See
  39. * https://developer.github.com/apps/building-github-apps/understanding-rate-limits-for-github-apps/
  40. *
  41. * When the token is expired, the rate limit is 60 calls per hour for the public IP
  42. * of the machine. BE CAREFUL, THAT SHOULD NEVER OCCUR.
  43. *
  44. * See https://developer.github.com/apps/building-github-apps/authenticating-with-github-apps/#authenticating-as-an-installation
  45. */
  46. @Immutable
  47. public class AppInstallationToken implements AccessToken {
  48. private final String token;
  49. public AppInstallationToken(String token) {
  50. this.token = requireNonNull(token, "token can't be null");
  51. }
  52. @Override
  53. public String getValue() {
  54. return token;
  55. }
  56. @Override
  57. public String getAuthorizationHeaderPrefix() {
  58. return "Token";
  59. }
  60. @Override
  61. public boolean equals(Object o) {
  62. if (this == o) {
  63. return true;
  64. }
  65. if (o == null || getClass() != o.getClass()) {
  66. return false;
  67. }
  68. AppInstallationToken that = (AppInstallationToken) o;
  69. return token.equals(that.token);
  70. }
  71. @Override
  72. public int hashCode() {
  73. return token.hashCode();
  74. }
  75. @Override
  76. public String toString() {
  77. return token;
  78. }
  79. }