OAuth 2.0 PKCE

GPTKB entity

Statements (28)
Predicate Object
gptkbp:instanceOf security protocol extension
gptkbp:author gptkb:John_Bradley
gptkb:Brian_Campbell
gptkb:William_Denniss
Naveen Agarwal
gptkbp:category gptkb:government_agency
web security
authentication
gptkbp:code_challenge_method gptkb:standard
S256
gptkbp:definedIn gptkb:RFC_7636
gptkbp:firstPublished 2015
gptkbp:fullName OAuth 2.0 Proof Key for Code Exchange
https://www.w3.org/2000/01/rdf-schema#label OAuth 2.0 PKCE
gptkbp:improvesSecurityOf OAuth 2.0 Authorization Code Grant
gptkbp:partOf gptkb:OAuth_2.0
gptkbp:purpose mitigate authorization code interception attacks
gptkbp:recommendation gptkb:OAuth_2.1
gptkbp:standardizedBy gptkb:IETF
gptkbp:status gptkb:standard
gptkbp:usedFor mobile applications
single-page applications
public clients
gptkbp:uses code_challenge
code_challenge_method
code_verifier
gptkbp:bfsParent gptkb:OAuth_2.0_Pushed_Authorization_Requests
gptkbp:bfsLayer 8