diff --git a/index.php b/index.php index aeaf30f..eecb1e3 100644 --- a/index.php +++ b/index.php @@ -63,6 +63,8 @@ if (!isset($_SESSION['authorization']['userkey']) || if (isset($responses['userkey']) && isset($responses['token_valid'])) { // Update session with complete response (same as login.php) $_SESSION['authorization'] = $responses; + + session_regenerate_id(true); // Resets the session ID and timer to avoid user needs to relogin } else { // Token refresh failed - redirect to login session_destroy();