In my Angular app, I am using Google oAuth2. It works fine. Problem is that the user remains logged in his Google account forever.
This is a possible security problem for users using my app on public computers. (They log out from the app, but not from G. account)
I am using a known workaround to log out the user from Google account by request to https://mail.google.com/mail/u/0/?logout&hl=en But it's a hack, it doesn't work in Chrome and it's annoying for users using personal devices.
Ideal flow is: User is logged in his G. account already -> authenticated. User is not logged in - ask login, authenticate but don't log in to G. account.