|
|
|
|
|
by magicalhippo
2070 days ago
|
|
But there's nothing in the spec that requires you to disclose that data to begin with. And there's nothing they could write in the spec to deny that besides a perfunctory "please don't do that" which companies could ignore without consequence. |
|
However, that’s really about OpenID, not about OAuth.