Hi all, Thanks to Filip Skokan for his thorough review of the OAuth for Browser-Based Apps BCP. I've incorporated his changes as well as a few other editorial fixes from Louis Jannett and published Draft 16. You can view the latest version here:
https://www.ietf.org/archive/id/draft-ietf-oauth-browser-based-apps-16.html Aaron On Fri, Feb 16, 2024 at 4:24 PM <internet-dra...@ietf.org> wrote: > Internet-Draft draft-ietf-oauth-browser-based-apps-16.txt is now > available. It > is a work item of the Web Authorization Protocol (OAUTH) WG of the IETF. > > Title: OAuth 2.0 for Browser-Based Apps > Authors: Aaron Parecki > David Waite > Philippe De Ryck > Name: draft-ietf-oauth-browser-based-apps-16.txt > Pages: 59 > Dates: 2024-02-16 > > Abstract: > > This specification details the threats, attack consequences, security > considerations and best practices that must be taken into account > when developing browser-based applications that use OAuth 2.0. > > Discussion Venues > > This note is to be removed before publishing as an RFC. > > Discussion of this document takes place on the Web Authorization > Protocol Working Group mailing list (oauth@ietf.org), which is > archived at https://mailarchive.ietf.org/arch/browse/oauth/. > > Source for this draft and an issue tracker can be found at > https://github.com/oauth-wg/oauth-browser-based-apps. > > The IETF datatracker status page for this Internet-Draft is: > https://datatracker.ietf.org/doc/draft-ietf-oauth-browser-based-apps/ > > There is also an HTML version available at: > https://www.ietf.org/archive/id/draft-ietf-oauth-browser-based-apps-16.html > > A diff from the previous version is available at: > > https://author-tools.ietf.org/iddiff?url2=draft-ietf-oauth-browser-based-apps-16 > > Internet-Drafts are also available by rsync at: > rsync.ietf.org::internet-drafts > > > _______________________________________________ > OAuth mailing list > OAuth@ietf.org > https://www.ietf.org/mailman/listinfo/oauth >
_______________________________________________ OAuth mailing list OAuth@ietf.org https://www.ietf.org/mailman/listinfo/oauth