├── README.md ├── LICENSE └── index.html /README.md: -------------------------------------------------------------------------------- 1 | OAuth DPoP Demo in Vanilla JS 2 | ============================= 3 | 4 | https://oauth.net/2/dpop/ 5 | 6 | DPoP is a proof-of-possession technique for binding access tokens to a private key. The client signs each request to the authorization server and resource server with a private key and sends a DPoP proof in the request header. 7 | 8 | This is an implementation of DPoP in JavaScript with no external libraries used. Because of this, the code is more verbose than you would typically see in an application that uses a DPoP library, but is a demonstration of what it takes to create DPoP proofs. 9 | 10 | For a more thorough implementation that is suitable for production use, see [panva/dpop](https://github.com/panva/dpop). 11 | 12 | -------------------------------------------------------------------------------- /LICENSE: -------------------------------------------------------------------------------- 1 | MIT License 2 | 3 | Copyright (c) 2023 Aaron Parecki 4 | 5 | Permission is hereby granted, free of charge, to any person obtaining a copy 6 | of this software and associated documentation files (the "Software"), to deal 7 | in the Software without restriction, including without limitation the rights 8 | to use, copy, modify, merge, publish, distribute, sublicense, and/or sell 9 | copies of the Software, and to permit persons to whom the Software is 10 | furnished to do so, subject to the following conditions: 11 | 12 | The above copyright notice and this permission notice shall be included in all 13 | copies or substantial portions of the Software. 14 | 15 | THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR 16 | IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, 17 | FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL THE 18 | AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER 19 | LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, 20 | OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE 21 | SOFTWARE. -------------------------------------------------------------------------------- /index.html: -------------------------------------------------------------------------------- 1 | 2 |