@misc{rfc10017, series = {Request for Comments}, number = 10017, howpublished = {RFC 10017}, publisher = {RFC Editor}, doi = {10.17487/RFC10017}, url = {https://www.rfc-editor.org/info/rfc10017/}, author = {A. Parecki and P. De Ryck and D. Waite}, title = {{OAuth 2.0 for Browser-Based Applications}}, pagetotal = 49, year = 2026, month = aug, abstract = {This specification details the threats, attack consequences, security considerations, and best practices that must be taken into account when developing browser-based applications that use OAuth 2.0.}, }