OAuth 2.0 / OIDC Security Audit
Formal review workflow for OAuth 2.0 and OpenID Connect implementations. Maps every finding to a normative source (RFC 9700 §, OWASP, CWE) and produces a severity-rated report — not a generic "best practices" summary.
Quick Reference
| What | Details |
|---|---|
| Primary spec | RFC 9700 — OAuth 2.0 Security Best Current Practice (Jan 2025) |
| Adjacent specs | RFC 6749 (core), RFC 6750 (bearer |
[Description truncada. Veja o README completo no GitHub.]