DEV Community

#oauth

OAuth flow implementation details

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Who is the agent acting as?

Who is the agent acting as?

Comments
6 min read
I Audited Every Tool That Can Read Our Company. The List Was 43 Long.

I Audited Every Tool That Can Read Our Company. The List Was 43 Long.

4
Comments
3 min read
Working Backwards from Error Logs: Reverse Engineering the Tableau-to-Fabric OAuth Breakdown

Working Backwards from Error Logs: Reverse Engineering the Tableau-to-Fabric OAuth Breakdown

Comments
7 min read
What Happens When Your Authentication Is Misconfigured

What Happens When Your Authentication Is Misconfigured

1
Comments
9 min read
Who mints the first Biscuit? PingFederate, token exchange and a hybrid model

Who mints the first Biscuit? PingFederate, token exchange and a hybrid model

Comments
6 min read
Social media API approval: OAuth, review, and publishing

Social media API approval: OAuth, review, and publishing

Comments
7 min read
Configuring PingFederate token exchange with Terraform, and testing it end to end

Configuring PingFederate token exchange with Terraform, and testing it end to end

Comments
6 min read
Building a PingFederate token generator that mints Biscuits

Building a PingFederate token generator that mints Biscuits

Comments
7 min read
Fixing Threads API Authorization Code Failures

Fixing Threads API Authorization Code Failures

Comments
3 min read
MCP Authentication Explained: OAuth 2.1 for Remote MCP Servers

MCP Authentication Explained: OAuth 2.1 for Remote MCP Servers

Comments
5 min read
MCP for tour guides: building a remote MCP server with ~100 tools and OAuth

MCP for tour guides: building a remote MCP server with ~100 tools and OAuth

Comments
6 min read
A Deactivated User With a Live Token: Reading Concrete CMS CVE-2026-85387 as a Revocation Gap

A Deactivated User With a Live Token: Reading Concrete CMS CVE-2026-85387 as a Revocation Gap

Comments
3 min read
How exactly would you validate the OAuth scope in Apigee? Which policy or condition would you use?

How exactly would you validate the OAuth scope in Apigee? Which policy or condition would you use?

5
Comments
2 min read
The OAuth Grants Nobody Reviews: Governing Third-Party SaaS Access

The OAuth Grants Nobody Reviews: Governing Third-Party SaaS Access

Comments
4 min read
How to secure a Jakarta EE client application with OIDC (using pac4j)

How to secure a Jakarta EE client application with OIDC (using pac4j)

Comments
8 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.