oauth2-server
oauth2-server copied to clipboard
Haskell libraries for implementing OAuth2 servers.
This would mean less evaluations of scrypt and less handling of the credentials themselves.
A token_refresh grant should issue a new refresh token only when the existing refresh token is due to expire before the new bearer token.
It should be possible to control the provision of refresh tokens. Particular policies that would likely be useful: - Include/exclude for particularly non-/sensitive scopes. - Include/exclude for particularly non-/trusty-worthy clients.
Hi, have you got any plans to release oauth2-server to hackage?