RFC 6750 · PROPOSED STANDARD · 2012

The OAuth 2.0 Authorization Framework: Bearer Token Usage

Overview

RFC 6750, “The OAuth 2.0 Authorization Framework: Bearer Token Usage”, is a Proposed Standard document published in October 2012 by M. Jones, D. Hardt. It has since been updated by RFC 8996, RFC 9700. The canonical text is published by the RFC Editor.

Abstract

This specification describes how to use bearer tokens in HTTP requests to access OAuth 2.0 protected resources. Any party in possession of a bearer token (a "bearer") can use it to get access to the associated resources (without demonstrating possession of a cryptographic key). To prevent misuse, bearer tokens need to be protected from disclosure in storage and in transport. [STANDARDS-TRACK]

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 6750 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Updated by
RFC 8996 RFC 9700
Other RFCs from 2012

Who Is Online

In total there are 70 users online: 0 registered, 64 guests and 6 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Facebook Other Bot SemrushBot Sogou

Users active in the past 15 minutes. Total registered members: 354