Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Bearer tokens work elsewhere and imho are drastically simpler than oauth


But where would you get bearer tokens? How would you manage consent and scopes? What about revocation? OAuth is essentially the "engine" that gives you the bearer tokens you need for authorization.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: