Two documents: 1) OAuth Security Topics https://tools.ietf.org/html/draft-ietf-oauth-security-topics-14 2) Browser-Based Apps https://tools.ietf.org/html/draft-ietf-oauth-browser-based-apps-05