Forem

# oauth

OAuth flow implementation details

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Attacks via a New OAuth flow, Authorization Code Injection, and Whether HttpOnly, PKCE, and BFF Can Help
Cover image for Attacks via a New OAuth flow, Authorization Code Injection, and Whether HttpOnly, PKCE, and BFF Can Help

Attacks via a New OAuth flow, Authorization Code Injection, and Whether HttpOnly, PKCE, and BFF Can Help

Comments
35 min read
OAuth 2.0 Security Best Practices for Developers

OAuth 2.0 Security Best Practices for Developers

3
Comments
11 min read
In-Depth review of the MCP authorization spec (2025-03-26 edition)
Cover image for In-Depth review of the MCP authorization spec (2025-03-26 edition)

In-Depth review of the MCP authorization spec (2025-03-26 edition)

Comments 1
8 min read
🔐 OAuth 2.0 + OpenID Connect (OIDC) đŸȘȘ
Cover image for 🔐 OAuth 2.0 + OpenID Connect (OIDC) đŸȘȘ

🔐 OAuth 2.0 + OpenID Connect (OIDC) đŸȘȘ

1
Comments
9 min read
OAuth2 Explained Simply — For Developers Who Hate Overcomplicated Docs
Cover image for OAuth2 Explained Simply — For Developers Who Hate Overcomplicated Docs

OAuth2 Explained Simply — For Developers Who Hate Overcomplicated Docs

2
Comments
6 min read
uri mismatch issue oauth2 | google | Error 400: redirect_uri_mismatch
Cover image for uri mismatch issue oauth2 | google | Error 400: redirect_uri_mismatch

uri mismatch issue oauth2 | google | Error 400: redirect_uri_mismatch

1
Comments
2 min read
Understanding OAuth/OpenID Response Types in .NET Web APIs
Cover image for Understanding OAuth/OpenID Response Types in .NET Web APIs

Understanding OAuth/OpenID Response Types in .NET Web APIs

Comments
9 min read
Adding user registration and authentication to your application with open web services
Cover image for Adding user registration and authentication to your application with open web services

Adding user registration and authentication to your application with open web services

1
Comments
4 min read
Securing API Gateway with AWS Cognito Authentication using OAuth 2.0 and Custom Domains
Cover image for Securing API Gateway with AWS Cognito Authentication using OAuth 2.0 and Custom Domains

Securing API Gateway with AWS Cognito Authentication using OAuth 2.0 and Custom Domains

6
Comments 1
6 min read
OAuth 2.0 vs. OAuth 2.1: What’s Changed and Why It Matters
Cover image for OAuth 2.0 vs. OAuth 2.1: What’s Changed and Why It Matters

OAuth 2.0 vs. OAuth 2.1: What’s Changed and Why It Matters

1
Comments
4 min read
Easy Bug: Open-Redirect on OAuth 2.0 redirect_uri param

Easy Bug: Open-Redirect on OAuth 2.0 redirect_uri param

Comments
1 min read
How to Secure Your Web App with JWT, OAuth, and Role-Based Access Control
Cover image for How to Secure Your Web App with JWT, OAuth, and Role-Based Access Control

How to Secure Your Web App with JWT, OAuth, and Role-Based Access Control

Comments
3 min read
How to select oauth scopes in next-auth / authjs
Cover image for How to select oauth scopes in next-auth / authjs

How to select oauth scopes in next-auth / authjs

Comments
2 min read
OAuth2 for System-to-System Authentication: A Deep Dive into the Client Credentials Flow
Cover image for OAuth2 for System-to-System Authentication: A Deep Dive into the Client Credentials Flow

OAuth2 for System-to-System Authentication: A Deep Dive into the Client Credentials Flow

1
Comments
5 min read
Salesforce: Connected App - ( OAuth2.0 Debugging Tool ! =)

Salesforce: Connected App - ( OAuth2.0 Debugging Tool ! =)

Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.