Full threadsjroot·Are you implementing OAuth 2 or interested in learning more? I would highly recommend combing through the OAuth 2.1 spec [1] as it incorporates the “best practices” that were added to 2.0 through additional RFCs.[1] https://tools.ietf.org/html/draft-ietf-oauth-v2-1-00View on HN