Skip to content

draft-ietf-oauth-cross-device-security-15

Choose a tag to compare

@PieterKas PieterKas released this 23 Jan 18:54
· 6 commits to main since this release
003a506

Updated with feedback received from area reviews and IESG

What's Changed

  • Fix typo in cross-device security document by @PieterKas in #254
  • Clarify best practices for cross-device security by @PieterKas in #246
  • Update guidance for defending against cross-device attacks by @PieterKas in #247
  • Update user education and add NIST phishing reference by @PieterKas in #253
  • Clarify practical mitigations summary wording by @PieterKas in #252
  • Update authorization server misuse detection language by @PieterKas in #250
  • Enhance trusted network section with SIM inference by @PieterKas in #251
  • Refine proximity considerations in authorization scenarios by @PieterKas in #249
  • Remind implementors to evaluate privacy implications. by @PieterKas in #248
  • Nits flagged in Med's IESG Review by @boucadair in #237
  • Enhance physical connectivity section with security risks by @PieterKas in #264
  • Clarify user interface for declining authorization requests by @PieterKas in #265
  • Clarify mitigation selection process in best practices by @PieterKas in #267
  • Refine authorization data flow and examples by @PieterKas in #269
  • Update cross-device protocol guidance for same-device use by @PieterKas in #270
  • Clarify proximity checks in cross-device security guidelines by @PieterKas in #268
  • Update CTAP title and add publisher information by @PieterKas in #266
  • Fix spelling and grammatical issues in document by @PieterKas in #271
  • Figure numbering by @PieterKas in #273

New Contributors

Full Changelog: draft-ietf-oauth-cross-device-security-14...draft-ietf-oauth-cross-device-security-15