medium95%
Docs: Google nonce example declares hashedNonce inside promise callback causing ReferenceError and potential security bypass
The Supabase Google login documentation contains a code snippet where hashedNonce is declared inside a .then() callback, making it inaccessible outside the callback. Users following the guide encounter a ReferenceError when trying to use hashedNonce, and may skip the nonce or pass the raw nonce to both Google and Supabase, reducing security.
