An implementation of Proof Key for Code Exchange (PKCE, RFC 7636) has been added for OAUTH2 Authorization Code flows, improving resilience to CSRF and code injection attacks.
This feature was funded by Comune di Roma
This feature was developed by Alessandro Pasotti
Image Preview
Click the image to open original size image in new tab