Skip to content

Commit 741f882

Browse files
committed
update changelog
1 parent 7cd74c4 commit 741f882

File tree

1 file changed

+8
-2
lines changed

1 file changed

+8
-2
lines changed

draft-ietf-oauth-browser-based-apps.md

Lines changed: 8 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1462,13 +1462,19 @@ Document History
14621462

14631463
[[ To be removed from the final specification ]]
14641464

1465+
-17
1466+
1467+
* Added a section on anti-forgery/double-submit cookies as another form of CSRF protection
1468+
* Updated CORS terminology
1469+
* Moved new section on in-browser flows as not applicable to BFF or TM patterns
1470+
* Fixed usage of some browser technology terminology
1471+
* Editorial improvements
1472+
14651473
-16
14661474

14671475
* Applied editorial changes from Filip Skokan and Louis Jannett
14681476
* Clarified when cookie encryption applies
14691477
* Added a section with security considerations on the use of postMessage
1470-
* Added a section on anti-forgery/double-submit cookies as another form of CSRF protection
1471-
* Updated CORS terminology
14721478

14731479
-15
14741480

0 commit comments

Comments
 (0)