draft-ietf-oauth-cross-device-security-15
·
6 commits
to main
since this release
Updated with feedback received from area reviews and IESG
What's Changed
- Fix typo in cross-device security document by @PieterKas in #254
- Clarify best practices for cross-device security by @PieterKas in #246
- Update guidance for defending against cross-device attacks by @PieterKas in #247
- Update user education and add NIST phishing reference by @PieterKas in #253
- Clarify practical mitigations summary wording by @PieterKas in #252
- Update authorization server misuse detection language by @PieterKas in #250
- Enhance trusted network section with SIM inference by @PieterKas in #251
- Refine proximity considerations in authorization scenarios by @PieterKas in #249
- Remind implementors to evaluate privacy implications. by @PieterKas in #248
- Nits flagged in Med's IESG Review by @boucadair in #237
- Enhance physical connectivity section with security risks by @PieterKas in #264
- Clarify user interface for declining authorization requests by @PieterKas in #265
- Clarify mitigation selection process in best practices by @PieterKas in #267
- Refine authorization data flow and examples by @PieterKas in #269
- Update cross-device protocol guidance for same-device use by @PieterKas in #270
- Clarify proximity checks in cross-device security guidelines by @PieterKas in #268
- Update CTAP title and add publisher information by @PieterKas in #266
- Fix spelling and grammatical issues in document by @PieterKas in #271
- Figure numbering by @PieterKas in #273
New Contributors
- @boucadair made their first contribution in #237
Full Changelog: draft-ietf-oauth-cross-device-security-14...draft-ietf-oauth-cross-device-security-15