oauth2 Profile - 2.1.2 5th paragraph @torsten comment [draft-ietf-oauth-security-topics]

Issue #7 resolved
Paul Grassi created an issue

„Dynamically registered native applications MAY use PKCE."

What about PKCE for code replay detection? I suggest you align your draft with https://tools.ietf.org/html/draft-ietf-oauth-security-topics

Comments (7)

  1. Log in to comment