%% You should probably cite draft-ietf-oauth-browser-based-apps-17 instead of this revision. @techreport{ietf-oauth-browser-based-apps-12, number = {draft-ietf-oauth-browser-based-apps-12}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-oauth-browser-based-apps/12/}, author = {Aaron Parecki and David Waite}, title = {{OAuth 2.0 for Browser-Based Apps}}, pagetotal = 33, year = , month = , day = , abstract = {This specification details the security considerations and best practices that must be taken into account when developing browser- based applications that use OAuth 2.0. Discussion Venues This note is to be removed before publishing as an RFC. Discussion of this document takes place on the Web Authorization Protocol Working Group mailing list (oauth@ietf.org), which is archived at https://mailarchive.ietf.org/arch/browse/oauth/. Source for this draft and an issue tracker can be found at https://github.com/oauth-wg/oauth-browser-based-apps.}, }