Why client secret and state matter if the redirect URI is controlled?

前端 未结 0 681
星月不相逢
星月不相逢 2020-11-28 15:32

As we all know, the OAuth 2.0 protocol recommends that:

  • The client secret be kept credential, and
  • The state parameter be
相关标签:
回答
  • 消灭零回复
提交回复
热议问题