2022-11-22 UTC
# barnaby yeah I’m definitely in favour of at least mentioning as many relevant things as possible in the spec and providing fleshed-out examples, even if they are non-normative and just link to some of the other OAuth specs. Fragmentation has always been a criticism of OAuth2, and though 2.1 does a lot to fix that, I think indieauth does a good job of being an example of how OAuth extension specs can be written to be clear and mostly self-contained