@techreport{ietf-oauth-identity-assertion-authz-grant-01, number = {draft-ietf-oauth-identity-assertion-authz-grant-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-oauth-identity-assertion-authz-grant/01/}, author = {Aaron Parecki and Karl McGuinness and Brian Campbell}, title = {{Identity Assertion JWT Authorization Grant}}, pagetotal = 32, year = 2025, month = oct, day = 19, abstract = {This specification provides a mechanism for an application to use an identity assertion to obtain an access token for a third-party API by coordinating through a common enterprise identity provider using Token Exchange {[}RFC8693{]} and JWT Profile for OAuth 2.0 Authorization Grants {[}RFC7523{]}.}, }