OAuth Security Auditor

OAuth Security Auditor

Review OAuth client and server choices against current security guidance, locally and without a token exchange.

Local advisory review only. Findings do not certify a deployment or contact an authorization server.

Redirect URIs are checked as values; they are never opened.
OAuth configurationJSON · client and server controls
StatusReviewable
Findings0
Errors0
Security reviewAdvisory findings
{
  "posture": "reviewable",
  "findings": []
}