Thanks Aaron,
The timing here is a bit awkward as the draft is actually in IETF wide last
call. But the AD has requested publication of a new -15 draft soon and
concurrent with the LC to address some residual feedback from his review
that didn't make it into -14. I'd like to aim to get changes add
In reviewing RAR, I noticed a couple things. I've submitted the editorial
suggestions below as a PR.
* Changed "the requested scope, i.e., the permission, of an access token"
to "the requested scope, i.e., the limited capability, of an access token".
Scope isn't defined as "permission" in OAuth 2.