[play-pac4j-heroku] $ run
--- (Running the application, auto-reloading is enabled) ---
[info] play - Listening for HTTP on /0:0:0:0:0:0:0:0:9000
(Server started, use Ctrl+D to stop and go back to the console...)
---------------- Initial Site Hit -----------------
[info] play - Application started (Dev)
[debug] o.p.p.s.ScalaController - getOrCreateSessionId : None
[debug] o.p.p.s.ScalaController - sessionId for getRedirectionUrl() : 614c8830-b62b-438e-b8f8-6b8cdb7edf34
[debug] o.p.p.CallbackController - defaultUrl : /
[debug] o.p.p.s.ScalaController - requestedUrlToSave : /
[debug] o.p.o.c.BaseOAuth20Client - Random state parameter: yikne1kP9T
[debug] o.p.p.s.ScalaController - redirectAction to : org.pac4j.core.client.RedirectAction@6196d5a8
[debug] o.p.p.s.ScalaController - redirectAction to : org.pac4j.core.client.RedirectAction@6196d5a8
[debug] o.p.p.s.ScalaController - sessionId for profile : None
---------------- Authenticate Link -----------------
[debug] o.p.p.j.ActionContext - clientName : Google2Client
[debug] o.p.p.StorageHelper - retrieved sessionId : null
[debug] o.p.p.StorageHelper - generated sessionId : 2b1949dd-1556-4f8a-8f3b-15ab9afd6573
[debug] o.p.o.c.BaseOAuth20Client - sessionState : null / stateParameter : yikne1kP9T
[error] o.p.o.c.BaseOAuth20Client - Missing state parameter : session expired or possible threat of cross-site request forgery
[error] o.p.p.j.RequiresAuthenticationAction - Unexpected error