The OAuth 2.0 Authorization Framework, October 2012
- File formats:
- PROPOSED STANDARD
- RFC 5849
- Updated by:
- RFC 8252, RFC 8996
- D. Hardt, Ed.
- oauth (sec)
Discuss this RFC: Send questions or comments to the mailing list [email protected]
The OAuth 2.0 authorization framework enables a third-party application to obtain limited access to an HTTP service, either on behalf of a resource owner by orchestrating an approval interaction between the resource owner and the HTTP service, or by allowing the third-party application to obtain access on its own behalf. This specification replaces and obsoletes the OAuth 1.0 protocol described in RFC 5849. [STANDARDS-TRACK]
For the definition of Status, see RFC 2026.
For the definition of Stream, see RFC 8729.