github panva/openid-client v2.0.1

latest releases: v6.8.8, v6.8.7, v6.8.6...
8 years ago
  • fixed client_secret_basic requiring the username and password tokens to be x-www-form-urlencoded
    according to https://tools.ietf.org/html/rfc6749#section-2.3.1
    • NOTE: Although technically a fix, this is a breaking change when used with providers that also
      don't currently follow the standard. A proper way of submitting client_id and client_secret using client_secret_basic is Authorization: base64(formEncode(client_id):formEncode(client_secret)). If your client_id and client_secret does contain special characters that need encoding this does not affect you. If it does, try using client_secret_post instead.

Don't miss a new openid-client release

NewReleases is sending notifications on new releases.