proud-ghost-96894
06/11/2025, 6:34 AMkratos
and earlier today noticed that Sign-in With Apple via REST stopped working because Apple changed their issuer iss
claim from <https://appleid.apple.com>
as specified in their official docs (ref) to a new value <https://account.apple.com>
now issues validations are failing. Dear Ory, are you aware of this issue and what would be a recommended way to address it ASAP? This is not specific to Kratos generally and other people relying on the issuer check are also noticing it:
• https://status.supabase.com/
• https://www.reddit.com/r/webdev/comments/1l8klnc/sign_in_with_apple_issues/proud-ghost-96894
06/11/2025, 6:38 AM{
"id": "REDACTED",
"error": {
"code": 500,
"message": "An internal server error occurred, please contact the system administrator",
"reason": "Unable to initialize OpenID Connect Provider: oidc: issuer did not match the issuer returned by provider, expected \"<https://appleid.apple.com>\" got \"<https://account.apple.com>\"",
"status": "Internal Server Error"
},
"created_at": "2025-06-11T06:29:01.063176Z",
"updated_at": "2025-06-11T06:29:01.063176Z"
}
proud-ghost-96894
06/11/2025, 6:49 AMearly-magician-18981
06/11/2025, 9:01 AMearly-magician-18981
06/11/2025, 9:20 AMproud-ghost-96894
06/11/2025, 9:34 AMearly-magician-18981
06/11/2025, 9:41 AMproud-ghost-96894
06/11/2025, 9:42 AMproud-ghost-96894
06/11/2025, 9:42 AMfierce-advantage-32807
06/11/2025, 1:26 PMearly-magician-18981
06/11/2025, 1:28 PMproud-ghost-96894
06/11/2025, 8:19 PM