Skip to content

Update OAuth 2.1 RFC references and terminology#390

Open
MohammadAman5577 wants to merge 1 commit intoaaronpk:mainfrom
MohammadAman5577:patch-1
Open

Update OAuth 2.1 RFC references and terminology#390
MohammadAman5577 wants to merge 1 commit intoaaronpk:mainfrom
MohammadAman5577:patch-1

Conversation

@MohammadAman5577
Copy link
Copy Markdown

Hello! I noticed a few technical inaccuracies regarding the current state of the OAuth 2.1 specifications on this page and have updated them to reflect the latest IETF standards.

Specific changes made:

  1. Clarified Draft vs. RFC status: Rephrased the introductory paragraph to acknowledge that "OAuth for Browser-Based Apps" is still an active Internet-Draft, not a published RFC.
  2. Added Missing RFC Designation: Added the official RFC number (RFC 9700) for the "OAuth 2.0 Security Best Current Practice" which was recently published.
  3. Terminology Alignment: Updated the bullet point regarding refresh tokens from "one-time use" to "rotated" to perfectly align with the official phrasing (Refresh Token Rotation) used in the OAuth 2.1 draft.

Let me know if you need any adjustments!

Best,
Mohammad Aman

Hello! I noticed a few technical inaccuracies regarding the current state of the OAuth 2.1 specifications on this page and have updated them to reflect the latest IETF standards. 

Specific changes made:
1. **Clarified Draft vs. RFC status:** Rephrased the introductory paragraph to acknowledge that "OAuth for Browser-Based Apps" is still an active Internet-Draft, not a published RFC.
2. **Added Missing RFC Designation:** Added the official RFC number (RFC 9700) for the "OAuth 2.0 Security Best Current Practice" which was recently published.
3. **Terminology Alignment:** Updated the bullet point regarding refresh tokens from "one-time use" to "rotated" to perfectly align with the official phrasing (Refresh Token Rotation) used in the OAuth 2.1 draft.

Let me know if you need any adjustments!

Best,
Mohammad Aman
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant