[OAUTH-WG] Secdir last call review of draft-ietf-oauth-browser-based-apps-22

2025-01-28 Thread Watson Ladd via Datatracker
Reviewer: Watson Ladd Review result: Has Issues I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by theIESG. These comments were written primarily for the benefit of thesecurity area directors. Document editors and WG c

[OAUTH-WG] Secdir last call review of draft-ietf-oauth-jwsreq-30

2020-09-25 Thread Watson Ladd via Datatracker
Reviewer: Watson Ladd Review result: Serious Issues I generated this review of this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written with the intent of improving security requirements and considerat