OAuth 2.0 Best Practices for Native Apps

In October, 2017, the Internet Engineering Task Force (IETF) released the Best Current Practices (BCP) when using OAuth 2.0 with native mobile applications. This BCP states that OAuth 2.0 authorization requests from native apps should only be made through external user agents, primarily the user’s browser. We’ll discuss what this means for developers and users and any security considerations involved.

