{"abstract": "This document describes a mechanism for sender-constraining OAuth 2.0 tokens via a proof-of-possession mechanism on the application level.  This mechanism allows for the detection of replay attacks with access and refresh tokens.", "ad": "/api/v1/person/person/105815/", "expires": "2023-10-15T11:22:52Z", "external_url": "", "group": "/api/v1/group/group/1748/", "id": 95875, "intended_std_level": "/api/v1/name/intendedstdlevelname/ps/", "keywords": "[]", "name": "draft-ietf-oauth-dpop", "note": "", "notify": "rifaat.s.ietf@gmail.com", "pages": 39, "resource_uri": "/api/v1/doc/document/draft-ietf-oauth-dpop/", "rev": "16", "rfc": null, "rfc_number": null, "shepherd": "/api/v1/person/email/rifaat.s.ietf@gmail.com/", "states": ["/api/v1/doc/state/3/", "/api/v1/doc/state/108/", "/api/v1/doc/state/154/", "/api/v1/doc/state/112/", "/api/v1/doc/state/7/", "/api/v1/doc/state/44/"], "std_level": "/api/v1/name/stdlevelname/ps/", "stream": "/api/v1/name/streamname/ietf/", "submissions": ["/api/v1/submit/submission/111272/", "/api/v1/submit/submission/111776/", "/api/v1/submit/submission/115953/", "/api/v1/submit/submission/118553/", "/api/v1/submit/submission/121680/", "/api/v1/submit/submission/124242/", "/api/v1/submit/submission/124452/", "/api/v1/submit/submission/125409/", "/api/v1/submit/submission/126005/", "/api/v1/submit/submission/126499/", "/api/v1/submit/submission/127424/", "/api/v1/submit/submission/128022/", "/api/v1/submit/submission/130728/", "/api/v1/submit/submission/131140/", "/api/v1/submit/submission/132112/", "/api/v1/submit/submission/133196/", "/api/v1/submit/submission/133208/"], "tags": [], "time": "2023-09-19T05:15:21Z", "title": "OAuth 2.0 Demonstrating Proof of Possession (DPoP)", "type": "/api/v1/name/doctypename/draft/", "uploaded_filename": "", "words": null}