Archives
All the articles I've archived.
-
Making IAM Reachable: My Shift to Developer-First Identity
•Why I'm moving beyond the IAM bubble and focusing on the future of Identity for AI Agents.
-
Unwrapping MCP Security: A Walkthrough with the Paypal MCP Server
•A Walkthrough with the Paypal MCP Server
-
Unwrapping MCP: A Walkthrough with the GitHub MCP Server
•A Walkthrough with the GitHub MCP Server
-
What is OAuth 2.0 Protected Resource Metadata (PRM)
•What is OAuth 2.0 Protected Resource Metadata (PRM)
-
mTLS and OAuth2 — Certificate-Bound Tokens
•mTLS and OAuth2 — Certificate-Bound Tokens
-
mTLS and OAuth2 — Client Authentication
•mTLS and OAuth2 — Client Authentication
-
Secure OAuth2: A Simple Story of Two Keys — PKCE
•Simple Story of Two Keys — PKCE
-
Secure OAuth2 (Part -4): Securing Response Using JWT Secured Authorization Response Mode (JARM)
•Securing Response Using JWT Secured Authorization Response Mode (JARM)
-
Secure OAuth2 (Part -3): Push Authorization Request (PAR) to Rescue
•Push Authorization Request (PAR) to Rescue
-
Secure OAuth2 (Part -2): Put it in a JAR (JWT-Secured Authorization Request)
•Secure OAuth2 (Part -2): Put it in a JAR (JWT-Secured Authorization Request)
-
Is Authorization Code Grant Type Secure Enough?
•Is Authorization Code Grant Type Secure Enough?
-
OAuth2 Token Exchange in Practice
•OAuth2 Token Exchange in Practice
-
How to register and manage OAuth2 clients?
•How to register and manage OAuth2 clients?
-
How do you discover the OAuth2 server configuration?
•How do you discover the OAuth2 server configuration?
-
Understanding OAuth2 Landscape
•Understanding OAuth2 Landscape
-
API Security: How to avoid Broken Object Level Authorization & Broken Function Level Authorization
•API Security: How to avoid Broken Object Level Authorization & Broken Function Level Authorization
-
Web Browser SSO Profile
•Web Browser SSO Profile
-
Reloading SAML: IdP Discovery
•IdP Discovery
-
Reloading SAML: Why do you need SAML Metadata?
•Why do you need SAML Metadata?
-
Reloading SAML: SAML Basics
•SAML Basics
-
Reloading SAML: Do you really need SAML?
•Reloading SAML: Do you really need SAML?