RFC 6819 · INFORMATIONAL · 2013

OAuth 2.0 Threat Model and Security Considerations

Overview

RFC 6819, “OAuth 2.0 Threat Model and Security Considerations”, is an Informational document published in January 2013 by T. Lodderstedt, M. McGloin, P. Hunt. It has since been updated by RFC 9700. The canonical text is published by the RFC Editor.

Abstract

This document gives additional security considerations for OAuth, beyond those in the OAuth 2.0 specification, based on a comprehensive threat model for the OAuth 2.0 protocol. This document is not an Internet Standards Track specification; it is published for informational purposes.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 6819 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Updated by
RFC 9700
Other RFCs from 2013

Who Is Online

In total there are 134 users online: 0 registered, 129 guests and 5 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Facebook Other Bot SemrushBot

Users active in the past 15 minutes. Total registered members: 354