Back to Courses

Getting Started with OAuth and OpenID Connect: Session 8: OAuth for Single Page Applications

Session 8: OAuth for Single Page Applications

Single Page Applications run without a backend. All logic happens in the browser using JavaScript. To retrieve a token in order to call APIs, certain measures should be taken. You will learn the best practices, and we explore multiple ways SPAs can make use of OAuth.

  • PKCE - Proof Key for Code Exchange
  • Code Flow with an SPA
  • Depending on the SSO Session
  • Assisted Token
  • Using a Backend for Frontend

Related resources

Speaker

Identity Specialists

Identity Specialists

at Curity