Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: OpenID Connect / OAuth client 3.0.0-alpha9 New alpha version released for module openid_connect (3.0.0-alpha9). Release: Opensolr Search 4.5.0 Minor update available for module opensolr_search (4.5.0). Release: Timelinr 1.0.1 Minor update available for module timelinr (1.0.1). Usage Milestone: Simplify Module simplify crossed 10,000 active installs. Usage Milestone: Views Reference Filter Module entityreference_filter crossed 10,000 active installs. Usage Milestone: Dropdown Language Module dropdown_language crossed 10,000 active installs. Usage Milestone: Paragraphs Browser Module paragraphs_browser crossed 10,000 active installs. Usage Milestone: OpenAPI Module openapi crossed 10,000 active installs. Usage Milestone: Decoupled Router Module decoupled_router crossed 10,000 active installs. Module Revived: Entityqueue Buttons 1.1.2 Module entityqueue_buttons updated after 8 months of inactivity (1.1.2).

This module helps prevent security risks and inconvenience by requiring users to re-authenticate after a period of inactivity. It blocks browser interactions and presents a modal with options to re-enter their password or log in as a different user. Administrators can configure the idle time and available re-authentication methods.

Authenticated users may leave their browser unattended. This may impose a security issue for the application and/or the managed data, or it may be an inconvenience, if the same browser is supposed to be used by multiple users.

To prevent those issues from happening, but also not disturbing the current user, this module blocks any interaction in the browser for the current session and shows a modal dialog box where the user returning to the screen has various options:

Administrators can configure the idle time before a session gets blocked and requires re-authentication. They can also configure, which of the re-authentication methods will be allowed.

This module does not only block the current browser tab, it also blocks the session. Otherwise, the user could simply open another browser tab and continue working. The module does not invalidate the current session because then the user couldn't easily continue working after re-authentication, i.e. an open form which was half filled before e.g. the phone rang or the user got distracted otherwise.

Depends on

Dependencies of the latest stable release

No dependencies recorded for this project.

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
6
Tracked since
Feb 2025
Latest release
2 weeks ago
Releases (12 mo)
2 ▼ from 4
Maintenance
Active

Release Timeline

Releases

Version Type Core Release date
1.0.0-rc2 Pre-release 10–11 Aug 12, 2026
1.0.0-rc1 Pre-release 10–11 Sep 8, 2025
1.0.0-beta3 Pre-release 10–11 Feb 8, 2025
1.0.0-beta2 Pre-release 10–11 Feb 7, 2025
1.0.0-beta1 Pre-release 10–11 Feb 6, 2025
1.0.x-dev Dev 10–11 Feb 4, 2025