RFC 6749 · PROPOSED STANDARD · 2012

The OAuth 2.0 Authorization Framework

Overview

RFC 6749, “The OAuth 2.0 Authorization Framework”, is a Proposed Standard document published in October 2012 by D. Hardt. It obsoletes RFC 5849. It has since been updated by RFC 8252, RFC 8996, RFC 9700. The canonical text is published by the RFC Editor.

Abstract

The OAuth 2.0 authorization framework enables a third-party application to obtain limited access to an HTTP service, either on behalf of a resource owner by orchestrating an approval interaction between the resource owner and the HTTP service, or by allowing the third-party application to obtain access on its own behalf. This specification replaces and obsoletes the OAuth 1.0 protocol described in RFC 5849. [STANDARDS-TRACK]

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 6749 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
This RFC obsoletes
RFC 5849
Other RFCs from 2012

Who Is Online

In total there are 128 users online: 0 registered, 121 guests and 7 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: Applebot Bingbot Facebook Googlebot Other Bot SemrushBot Sogou

Users active in the past 15 minutes. Total registered members: 354