oauth-wg / oauth-v2-1

OAuth 2.1 is a consolidation of the core OAuth 2.0 specs
https://oauth.net/2.1/
Other
52 stars 27 forks source link

Native apps differences between mobile and desktop apps #142

Open aaronpk opened 1 year ago

aaronpk commented 1 year ago

Much of Vittorio's feedback in the native apps section stems from the differences in practice of mobile apps and desktop apps.

Should these recommendations be scoped to mobile apps now that we have more deployment experience since the Native Apps BCP was written? Do we all agree that the native apps recommendations are still valid?

aaronpk commented 6 months ago

This was discussed at IETF 116 and I believe the resolution was to ensure the language is in fact scoped to mobile apps, not desktop apps:

https://datatracker.ietf.org/doc/minutes-116-oauth-202303310030/#differences-between-mobile-and-desktop-apps