aaronpk / oauth-first-party-apps

https://datatracker.ietf.org/doc/html/draft-parecki-oauth-first-party-apps
Other
9 stars 7 forks source link

Clarify binding mechanism for DPoP #95

Closed PieterKas closed 2 weeks ago

PieterKas commented 1 month ago

Clarify that the binding is not done through cryptographic means but rather through association by the authorization server since the binding is only between the client and the authorizations server. See issue #84

cc @yaronf , @bc-pi