Comments (1)
The Mintoken design is old in IndieAuth terms. It is from before 2020. You would have to go back to at least January 2020 to find the latest spec that still included a me
parameter on the § 6.3.1 Token Request. This is because later versions of IndieAuth dropped the me
parameter. This was done when the entire communication channel between authorization and token endpoint was scrapped from the spec.
Because Mintoken does not come with an authorization endpoint at all, it is up to the user to make sure that their chosen authorization endpoint still uses the early-2020 way of communicating and that applications that come to get a token do the same.
For history:
- Discussions on GitHub:
- PR that did the work: indieweb/indieauth/pull/49
- Specific commit that documents the out of scope: indieweb/indieauth@28c414c
- Discussion note from the 2020-08-08 IndieAuth Pop-up
Hope that shines enough light on things! 😎
from php-mintoken.
Related Issues (11)
- Solve timing attacks against the tokens HOT 1
- INPUT_SERVER is not available on some PHP configurations
- Error: Faulty Request There was an error with the request. The "client_id" field is invalid. HOT 3
- Store only hashed tokens HOT 2
- README clarifications
- How should a token endpoint respond to invalid requests?
- How should a token endpoint respond when Authorization Code Verification gives an empty scope?
- Pass along errors from Authorization Code Verification
- Explore possibility to be database agnostic HOT 2
- Rename endpoint.php to index.php HOT 3
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from php-mintoken.