summaryrefslogtreecommitdiff
path: root/oauthlib
Commit message (Expand)AuthorAgeFilesLines
* Add 3.2.2 versionHEADmasterJonathan Huot2023-01-101-1/+1
* Update pre-configured OIDC server to use OIDC flavor of Refresh Token grant t...Burke Livingston2022-10-061-2/+4
* OAuth2Error: Allow falsy values as stateTiphaine LAURENT2022-10-061-1/+1
* Upgrade GitHub Actions and make bandit, codespell, and pytest mandatory (#835)Christian Clauss2022-10-061-1/+1
* Merge pull request #832 from oauthlib/3.2.1Jonathan Huot2022-09-091-1/+1
|\
| * Prepare 3.2.1 releaseJonathan Huot2022-09-061-1/+1
* | Merge pull request from GHSA-3pgj-pg6c-r5p7Jonathan Huot2022-09-091-1/+1
|\ \
| * | Fix IPV6 regex used to check redirect_uriJonathan Huot2022-09-061-1/+1
| |/
* | Merge pull request #818 from dasm/masterJonathan Huot2022-09-061-28/+38
|\ \ | |/ |/|
| * Restored test for port 0.Dariusz Smigiel2022-06-271-1/+1
| * Merge branch 'oauthlib:master' into masterDariusz2022-06-218-40/+31
| |\
| * | Removed unused query and fragmentDariusz Smigiel2022-06-151-2/+0
| * | Removed dependency on splitDariusz Smigiel2022-06-151-28/+40
| * | OAuth1: Allow IPv6 addresses being parsed by signatureDariusz Smigiel2022-05-191-1/+1
* | | docs: fix typosKian-Meng Ang2022-07-069-12/+12
* | | docs: Fix a few typosTim Gates2022-07-038-9/+9
| |/ |/|
* | Fixed isort importsDariusz Smigiel2022-06-168-40/+31
|/
* Allow non-HTTPS issuer when OAUTHLIB_INSECURE_TRANSPORT. (#803)Theron Luhn2022-03-061-2/+2
* Docs: fix Sphinx warnings for better ReadTheDocs generation (#807)Jonathan Huot2022-02-246-107/+92
* Add CORS support for Refresh Token Grant.Theron Luhn2022-02-154-18/+20
* add missing slots to TokenBaseArie Bovenberg2022-02-131-0/+1
* Fixed the versionJonathan Huot2022-01-291-1/+1
* Fixed code documentationJonathan Huot2022-01-291-1/+1
* Merge pull request #766 from oauthlib/3.2.0-devJonathan Huot2022-01-291-1/+1
|\
| * Prepare 3.2.0 releaseJonathan Huot2021-06-031-1/+1
* | Add support for device authorization flow (RFC8628) (#795)Mike Kelly2022-01-184-0/+113
* | PKCE (#786)Jon Velando2021-12-133-6/+143
* | Add `Access-Control-Allow-Origin` header to metadata endpoint.Theron Luhn2021-12-131-1/+2
* | Add support for CORS in the token endpoint.Theron Luhn2021-12-132-0/+44
* | rm comma after Bearer in WWW-Authenticate headerkamenev2021-11-141-5/+2
* | Bug expires at (#783)Scott Gifford2021-10-221-1/+4
* | fix #755: ensure save_token is called for hybrid code flowKarim Kanso2021-08-181-0/+2
* | Move refresh_id_token to validator functionNikos Sklikas2021-06-032-4/+14
* | Add support for refreshing ID TokensNikos Sklikas2021-06-032-0/+37
* | Fix RefreshTokenGrant modifiersNikos Sklikas2021-06-031-1/+1
|/
* 3.1.1 releaseJonathan Huot2021-05-311-1/+1
* per @JonathanHuot use existing get_token_from_header()Alan Crosswell2021-05-291-13/+5
* handle another case of assuming the token starts after 'Bearer 'Alan Crosswell2021-05-291-5/+6
* Fix Authorization header that is not a Bearer to not return a tokenAlan Crosswell2021-05-291-1/+3
* Remove typoBella Woo2021-05-261-1/+0
* Use better regex for IPv6 to allow a lot more valid IPv6 addresses (#753)Paul Dekkers2021-05-101-26/+2
* Properly handle prompt=noneNikos Sklikas2021-05-013-41/+1
* Use request.nonce when generating hybrid id tokenTom Evans2021-02-121-0/+3
* Update pydoc in parameters.pyX6VmZSxczGzm9Ak5uy-rrodriguez2020-07-291-2/+2
* OAuth 1.0a signature methods: RSA-SHA256, RSA-SHA512 and HMAC-SHA512 (#723)Hoylen Sue2020-06-035-421/+605
* Remove Python 2 codes (#734)Asif Saif Uddin2020-05-1240-40/+0
* Merge branch 'master' into isort-integrationJonathan Huot2020-04-225-8/+23
|\
| * Merge branch 'master' into fix_issue_728Jonathan Huot2020-04-222-8/+19
| |\
| | * Merge branch 'master' into masterJonathan Huot2020-04-221-8/+18
| | |\
| | | * Base OAuth2 Client now has a consistent way of managing the `scope`: it cons...Sylvain MARIE2020-04-191-8/+18