-
-
Notifications
You must be signed in to change notification settings - Fork 68
Expand file tree
/
Copy pathTokenRetriever.py
More file actions
184 lines (150 loc) · 6.96 KB
/
TokenRetriever.py
File metadata and controls
184 lines (150 loc) · 6.96 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
import hashlib
import json
import os
import base64
import socket
import threading
import webbrowser
from http.server import BaseHTTPRequestHandler, HTTPServer
from urllib.parse import urlparse, parse_qs
import requests
class TokenRetriever:
STREAMLABS_API_URL = "https://streamlabs.com/api/v5/slobs/auth/data"
def __init__(self):
self.code_verifier = self._generate_code_verifier()
self.code_challenge = self._generate_code_challenge(self.code_verifier)
self._auth_code: str | None = None
self._server_event = threading.Event()
# ------------------------------------------------------------------ #
# PKCE helpers #
# ------------------------------------------------------------------ #
@staticmethod
def _generate_code_verifier() -> str:
"""64-byte hex string (128 hex chars) used as the PKCE verifier."""
return os.urandom(64).hex()
@staticmethod
def _generate_code_challenge(verifier: str) -> str:
"""SHA-256 of the verifier, base64url-encoded (no padding)."""
digest = hashlib.sha256(verifier.encode()).digest()
return base64.urlsafe_b64encode(digest).decode().rstrip("=")
# ------------------------------------------------------------------ #
# Port helper #
# ------------------------------------------------------------------ #
@staticmethod
def _find_free_port() -> int:
"""Bind to port 0 and let the OS pick a free ephemeral port."""
with socket.socket(socket.AF_INET, socket.SOCK_STREAM) as s:
s.bind(("127.0.0.1", 0))
return s.getsockname()[1]
# ------------------------------------------------------------------ #
# Local callback server #
# ------------------------------------------------------------------ #
def _make_handler(self):
"""Return an HTTPServer request handler that captures the auth code."""
retriever = self # close over self
class _CallbackHandler(BaseHTTPRequestHandler):
def do_GET(self):
parsed = urlparse(self.path)
params = parse_qs(parsed.query)
if params.get("success", [""])[0] == "true" and "code" in params:
retriever._auth_code = params["code"][0]
body = b"<h2>Authentication successful! You can close this tab.</h2>"
self.send_response(200)
self.send_header("Content-Type", "text/html")
self.send_header("Content-Length", str(len(body)))
self.end_headers()
self.wfile.write(body)
else:
body = b"<h2>Authentication failed. Please try again.</h2>"
self.send_response(400)
self.send_header("Content-Type", "text/html")
self.send_header("Content-Length", str(len(body)))
self.end_headers()
self.wfile.write(body)
# signal the main thread regardless of outcome
retriever._server_event.set()
def log_message(self, *_):
pass # suppress default access log noise
return _CallbackHandler
def _start_callback_server(self, port: int) -> HTTPServer:
server = HTTPServer(("127.0.0.1", port), self._make_handler())
thread = threading.Thread(target=server.serve_forever, daemon=True)
thread.start()
return server
# ------------------------------------------------------------------ #
# Main entry point #
# ------------------------------------------------------------------ #
def retrieve_token(self, timeout: int = 300) -> str | None:
"""
Open the Streamlabs login page in the user's default browser, wait for
the OAuth callback on a local server, then exchange the code for a token.
Args:
timeout: seconds to wait for the user to complete login (default 5 min)
Returns:
The oauth_token string on success, or None on failure.
"""
port = self._find_free_port()
auth_url = (
f"https://streamlabs.com/slobs/login?"
f"skip_splash=true&external=electron&tiktok&force_verify"
f"&origin=slobs&port={port}"
f"&code_challenge={self.code_challenge}&code_flow=true"
)
server = self._start_callback_server(port)
print(f"Opening browser for Streamlabs login (callback on port {port})…")
webbrowser.open(auth_url)
completed = self._server_event.wait(timeout=timeout)
threading.Thread(target=server.shutdown, daemon=True).start()
if not completed:
print("Timed out waiting for the user to complete login.")
return None
if not self._auth_code:
print("Callback received but no auth code was present.")
return None
return self._exchange_code_for_token(self._auth_code)
# ------------------------------------------------------------------ #
# Token exchange #
# ------------------------------------------------------------------ #
def _exchange_code_for_token(self, code: str) -> str | None:
"""POST the auth code + verifier to Streamlabs and return the oauth_token."""
headers = {
"User-Agent": (
"Mozilla/5.0 (Windows NT 10.0; Win64; x64) "
"AppleWebKit/537.36 (KHTML, like Gecko) "
"StreamlabsDesktop/1.20.4 Chrome/122.0.6261.156 "
"Electron/29.3.1 Safari/537.36"
),
"Accept": "*/*",
"Accept-Language": "en-US",
"Sec-Fetch-Site": "cross-site",
"Sec-Fetch-Mode": "cors",
"Sec-Fetch-Dest": "empty",
}
params = {
"code_verifier": self.code_verifier,
"code": code,
}
try:
response = requests.get(
self.STREAMLABS_API_URL,
params=params,
headers=headers,
timeout=30,
)
except requests.RequestException as e:
print(f"Network error during token exchange: {e}")
return None
if response.status_code != 200:
print(f"Token exchange failed: HTTP {response.status_code} — {response.text}")
return None
try:
data = response.json()
except json.JSONDecodeError:
print("Token exchange returned non-JSON response.")
return None
if not data.get("success"):
print(f"Streamlabs reported failure: {data}")
return None
token = data["data"].get("oauth_token")
print(f"Got Streamlabs OAuth token: {token}")
return token