// invoked when the user decides to authorize a request token
-form_key_is_valid(getStringFromRequest('plugin_oauthprovider_token_authorize_token'));
+if(!form_key_is_valid(getStringFromRequest('plugin_oauthprovider_token_authorize_token'))) {
+ exit_form_double_submit();
+}
try {
$pluginname = 'oauthprovider';
-form_key_is_valid(getStringFromRequest('plugin_oauthprovider_token_delete_token'));
+if(!form_key_is_valid(getStringFromRequest('plugin_oauthprovider_token_delete_token'))) {
+ exit_form_double_submit();
+}
//access_ensure_global_level( plugin_config_get( 'manage_threshold' ) ); // equivalent function to be added later for ff
//session_require_global_perm('project_admin');
$pluginname = 'oauthprovider';
// deletes a request token if the users refuses to authorize it for a consumer
-form_key_is_valid(getStringFromRequest('plugin_oauthprovider_token_deny_token'));
+if(!form_key_is_valid(getStringFromRequest('plugin_oauthprovider_token_deny_token'))) {
+ exit_form_double_submit();
+}
try {