/authorize
endpoint. The pattern of starting a new login transaction without an explicit user-initiated action is the main source of transactions taking too long to complete, as the new login attempt is left unattended in a browser window and can be subject to malicious attacks.
If you are using Universal Login:
Deprecation Notice
logs with this search: type:depnote AND description:*Long*state*expirations*
. These results will point to login transactions and the applications (i.e. client_id
) lasting longer than 1 hour.
Note these logs are rate-limited, and you will see one per hour per client_id
.