OAuth 2.0 Demonstrating Proof of Possession (DPoP)
RFC 9449
Revision differences
Document history
| Date | By | Action |
|---|---|---|
|
2026-05-20
|
(System) | Changed metadata: changed keywords to '['security', 'oauth2']' from '[]' |
|
2026-05-20
|
(System) | Metadata update from RFC Editor |
|
2026-05-20
|
(System) | Changed author "D. Waite": changed name from "David Waite" to "D. Waite" |
|
2026-05-20
|
(System) | Changed author "M. Jones": changed name from "Michael Jones" to "M. Jones", changed affiliation from "independent" to "Self-Issued Consulting" |
|
2026-05-20
|
(System) | Changed author "T. Lodderstedt": changed name from "Torsten Lodderstedt" to "T. Lodderstedt", changed affiliation from "yes.com" to "Tuconic" |
|
2026-05-20
|
(System) | Changed author "J. Bradley": changed name from "John Bradley" to "J. Bradley" |
|
2026-05-20
|
(System) | Changed author "B. Campbell": changed name from "Brian Campbell" to "B. Campbell" |
|
2026-05-20
|
(System) | Changed author "D. Fett": changed name from "Daniel Fett" to "D. Fett" |
|
2026-05-20
|
(System) | Metadata update from RFC Editor |
|
2023-09-18
|
(System) | Received changes through RFC Editor sync (added Verified Errata tag) |
|
2023-09-18
|
(System) | Received changes through RFC Editor sync (added Errata tag) |
|
2023-09-07
|
(System) | Received changes through RFC Editor sync (created alias RFC 9449, changed title to 'OAuth 2.0 Demonstrating Proof of Possession (DPoP)', changed abstract to 'This … Received changes through RFC Editor sync (created alias RFC 9449, changed title to 'OAuth 2.0 Demonstrating Proof of Possession (DPoP)', changed abstract to 'This document describes a mechanism for sender-constraining OAuth 2.0 tokens via a proof-of-possession mechanism on the application level. This mechanism allows for the detection of replay attacks with access and refresh tokens.', changed pages to 39, changed standardization level to Proposed Standard, changed state to RFC, added RFC published event at 2023-09-07, changed IESG state to RFC Published) |
|
2023-09-07
|
(System) | RFC published |