Oh, and sorry... > threats document should be addressing that "overselling" problem[1], > and if that means highlighting a few things that we think should be > obvious, I'm in favour of it.
...I forgot to include the footnote. Barry [1] Note that I'm NOT saying that the WG is overselling OAuth, but that any technology like this gets oversold in the press, by implementors who want to make its support part of a sales pitch, and by general word of mouth/blog/twit. _______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth