oauth-wg / oauth-v2-1

OAuth 2.1 is a consolidation of the core OAuth 2.0 specs
https://oauth.net/2.1/
Other
52 stars 27 forks source link

Terminology nits #115

Closed ioggstream closed 2 years ago

ioggstream commented 2 years ago

I expect

The authorization server MUST first verify the identity of the resource owner. The way in which the authorization server authenticates the resource owner

If this is the case, I'd pick one, eg.

The AS MUST authenticate the Resource Owner. The way the AS authenticates the Resource Owner ...