RFC 6819 · INFORMATIONAL · 2013

OAuth 2.0 Threat Model and Security Considerations

Overview

RFC 6819, “OAuth 2.0 Threat Model and Security Considerations”, is an Informational document published in January 2013 by T. Lodderstedt, M. McGloin, P. Hunt. It has since been updated by RFC 9700. The canonical text is published by the RFC Editor.

Abstract

This document gives additional security considerations for OAuth, beyond those in the OAuth 2.0 specification, based on a comprehensive threat model for the OAuth 2.0 protocol. This document is not an Internet Standards Track specification; it is published for informational purposes.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 6819 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Updated by
RFC 9700
Other RFCs from 2013

Who Is Online

In total there are 115 users online: 0 registered, 107 guests and 8 bots.

Most users ever online was 5,555 on 17 Jul 2026, 3:23 am.

Bots: AhrefsBot Applebot Baiduspider Bingbot Other Bot Other Crawler PetalBot SemrushBot

Users active in the past 15 minutes. Total registered members: 372