Skip to content

Conversation

@ThisIsMissEm
Copy link
Contributor

This applies the recommendation in #42

@panva
Copy link
Member

panva commented Sep 29, 2025

I wouldn't stress about getting this one in just yet

  1. JWT BCP is due for an update
  2. RFC7523 is too and it does specify a typ value for client auth assertions but intentionally doesn't make their use a MUST (that change isn't reflected in the latest tracker version yet)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants