<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <title type="text">I-D list for Web Authorization Protocol RSS Feed</title>
    <subtitle type="text">Document changes</subtitle>
    <id>urn:uuid:f04f48d3-8cae-5ead-9d8f-a8a3b6178f97</id>
    <updated>2026-04-22T19:14:42.342670+00:00</updated>
    <link rel="alternate" type="text/html" hreflang="en" href="https://datatracker.ietf.org/"/>
    <link rel="self" type="application/atom+xml" href="https://datatracker.ietf.org/group/oauth/documents/feed/"/>

    
    <entry>
        
        <title>Policy, Lifecycle, and Intent Extensions for OAuth Rich Authorization Requests</title>
        

        <link href="/doc/draft-chen-oauth-rar-agent-extensions/"/>

        <id>urn:datatracker-ietf-org:event:1139128</id>
        
        <updated>2026-04-22T06:41:18.008843+00:00</updated>
        
        <published>2026-04-22T06:41:18.008843+00:00</published>
        
        <author>
            <name>Meiling Chen</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-chen-oauth-rar-agent-extensions-01.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   OAuth 2.0 Rich Authorization Requests (RAR) [RFC9396] defines a
   syntax for clients to request fine-grained permissions.  While
   powerful, this mechanism lacks standardized methods for clients to
   express three critical contextual dimensions prevalent in modern
   automated systems: the high-level user intent driving the request,
   the required security policy under which the request should be
   evaluated, and the binding of the authorization&#x27;s lifecycle to an
   external process.

   This document extends the RAR framework to address these gaps.  It
   first defines a new authorization_details type, *intent_request*, to
   facilitate goal-oriented authorization.  Second, it introduces two
   new parameters for the authorization_details object:
   *policy_context*, to request authorization under a specific assurance
   level, and *lifecycle_binding*, to tie the validity of the
   authorization grant to the state of an external entity.  These
   extensions enable authorization servers to make more intelligent,
   secure, and context-aware decisions, particularly in ecosystems
   involving autonomous agents and complex, long-running tasks.
</abstract>
	  <version>01</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Policy, Lifecycle, and Intent Extensions for OAuth Rich Authorization Requests</title>
        

        <link href="/doc/draft-chen-oauth-rar-agent-extensions/"/>

        <id>urn:datatracker-ietf-org:event:1139127</id>
        
        <updated>2026-04-22T06:41:18.006612+00:00</updated>
        
        <published>2026-04-22T06:41:18.006612+00:00</published>
        
        <author>
            <name>Meiling Chen</name>
        </author>

        <content type="html">New version accepted (logged-in submitter: Meiling Chen)</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Policy, Lifecycle, and Intent Extensions for OAuth Rich Authorization Requests</title>
        

        <link href="/doc/draft-chen-oauth-rar-agent-extensions/"/>

        <id>urn:datatracker-ietf-org:event:1139126</id>
        
        <updated>2026-04-22T06:41:17.949598+00:00</updated>
        
        <published>2026-04-22T06:41:17.949598+00:00</published>
        
        <author>
            <name>Meiling Chen</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Delegate SD-JWT</title>
        

        <link href="/doc/draft-gco-oauth-delegate-sd-jwt/"/>

        <id>urn:datatracker-ietf-org:event:1139105</id>
        
        <updated>2026-04-22T04:45:15.519537+00:00</updated>
        
        <published>2026-04-22T04:45:15.519537+00:00</published>
        
        <author>
            <name>Gareth Oliver</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-gco-oauth-delegate-sd-jwt-00.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   This document specifies an extension to Selective Disclosure JSON Web
   Tokens to support further delegation from the Holder to a Delegate
   Holder.  This is done by allowing the Key Binding JWT to also be an
   SD-JWT, optionally with its own Key Binding.  This has particular
   applicability to Agentic systems.
</abstract>
	  <version>00</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Delegate SD-JWT</title>
        

        <link href="/doc/draft-gco-oauth-delegate-sd-jwt/"/>

        <id>urn:datatracker-ietf-org:event:1139104</id>
        
        <updated>2026-04-22T04:45:15.517305+00:00</updated>
        
        <published>2026-04-22T04:45:15.517305+00:00</published>
        
        <author>
            <name>Gareth Oliver</name>
        </author>

        <content type="html">New version accepted (logged-in submitter: Gareth Oliver)</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Delegate SD-JWT</title>
        

        <link href="/doc/draft-gco-oauth-delegate-sd-jwt/"/>

        <id>urn:datatracker-ietf-org:event:1139103</id>
        
        <updated>2026-04-22T04:43:50.534870+00:00</updated>
        
        <published>2026-04-22T04:43:50.534870+00:00</published>
        
        <author>
            <name>Gareth Oliver</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138960</id>
        
        <updated>2026-04-21T13:08:44.172830+00:00</updated>
        
        <published>2026-04-21T13:08:44.172830+00:00</published>
        
        <author>
            <name>Gunter Van de Velde</name>
        </author>

        <content type="html">[Ballot Position Update] New position, No Objection, has been recorded for Gunter Van de Velde</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_ballot_position</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138822</id>
        
        <updated>2026-04-20T20:12:59.758590+00:00</updated>
        
        <published>2026-04-20T20:12:59.758590+00:00</published>
        
        <author>
            <name>Michael Jones</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-ietf-oauth-rfc7523bis-10.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
	  <abstract>   This document updates RFC7521, RFC7522, RFC7523 and RFC9126 with
   respect to the treatment of audience values in OAuth 2.0 Client
   Assertion Authentication and Assertion-based Authorization Grants to
   address a security vulnerability identified in the previous
   requirements for those audience values in multiple OAuth 2.0
   specifications.
</abstract>
	  <version>10</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138821</id>
        
        <updated>2026-04-20T20:12:59.756292+00:00</updated>
        
        <published>2026-04-20T20:12:59.756292+00:00</published>
        
        <author>
            <name>Brian Campbell</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138820</id>
        
        <updated>2026-04-20T20:12:52.411332+00:00</updated>
        
        <published>2026-04-20T20:12:52.411332+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">Request for posting confirmation emailed to previous authors: Brian Campbell &lt;bcampbell@pingidentity.com&gt;, Chuck Mortimore &lt;charliemortimore@gmail.com&gt;, Filip Skokan &lt;panva.ip@gmail.com&gt;, Michael Jones &lt;michael_b_jones@hotmail.com&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138819</id>
        
        <updated>2026-04-20T20:12:52.106143+00:00</updated>
        
        <published>2026-04-20T20:12:52.106143+00:00</published>
        
        <author>
            <name>Michael Jones</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138808</id>
        
        <updated>2026-04-20T16:19:01.086043+00:00</updated>
        
        <published>2026-04-20T16:19:01.086043+00:00</published>
        
        <author>
            <name>Gorry Fairhurst</name>
        </author>

        <content type="html">[Ballot Position Update] New position, No Objection, has been recorded for Gorry Fairhurst</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_ballot_position</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Token Status List (TSL)</title>
        

        <link href="/doc/draft-ietf-oauth-status-list/"/>

        <id>urn:datatracker-ietf-org:event:1138750</id>
        
        <updated>2026-04-20T11:14:05.631528+00:00</updated>
        
        <published>2026-04-20T11:14:05.631528+00:00</published>
        
        <author>
            <name>Paul Bastian</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-ietf-oauth-status-list-20.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviewers-ok</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
	  <abstract>   This specification defines a status mechanism called Token Status
   List (TSL), data structures and processing rules for representing the
   status of tokens secured by JSON Object Signing and Encryption (JOSE)
   or CBOR Object Signing and Encryption (COSE), such as JWT, SD-JWT,
   CBOR Web Token, and ISO mdoc.  It also defines an extension point and
   a registry for future status mechanisms.
</abstract>
	  <version>20</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Token Status List (TSL)</title>
        

        <link href="/doc/draft-ietf-oauth-status-list/"/>

        <id>urn:datatracker-ietf-org:event:1138749</id>
        
        <updated>2026-04-20T11:14:05.629346+00:00</updated>
        
        <published>2026-04-20T11:14:05.629346+00:00</published>
        
        <author>
            <name>Paul Bastian</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviewers-ok</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Token Status List (TSL)</title>
        

        <link href="/doc/draft-ietf-oauth-status-list/"/>

        <id>urn:datatracker-ietf-org:event:1138748</id>
        
        <updated>2026-04-20T11:13:54.367235+00:00</updated>
        
        <published>2026-04-20T11:13:54.367235+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">Request for posting confirmation emailed to previous authors: Christian Bormann &lt;chris.bormann@gmx.de&gt;, Paul Bastian &lt;paul.bastian@posteo.de&gt;, Tobias Looker &lt;tobias.looker@mattr.global&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviewers-ok</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Token Status List (TSL)</title>
        

        <link href="/doc/draft-ietf-oauth-status-list/"/>

        <id>urn:datatracker-ietf-org:event:1138747</id>
        
        <updated>2026-04-20T11:13:54.084636+00:00</updated>
        
        <published>2026-04-20T11:13:54.084636+00:00</published>
        
        <author>
            <name>Paul Bastian</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviewers-ok</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>VEIL: Verified Ephemeral Identity Layer for OAuth 2.1</title>
        

        <link href="/doc/draft-valverde-oauth-veil/"/>

        <id>urn:datatracker-ietf-org:event:1138551</id>
        
        <updated>2026-04-18T22:40:52.400171+00:00</updated>
        
        <published>2026-04-18T22:40:52.400171+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">Changed document external resources from: None to:&lt;br&gt;&lt;br&gt;github_repo https://github.com/gustavovalverde/zentity (Zentity)&lt;br&gt;webpage https://zentity.xyz/ (Zentity)</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_document</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>VEIL: Verified Ephemeral Identity Layer for OAuth 2.1</title>
        

        <link href="/doc/draft-valverde-oauth-veil/"/>

        <id>urn:datatracker-ietf-org:event:1138550</id>
        
        <updated>2026-04-18T22:40:51.760478+00:00</updated>
        
        <published>2026-04-18T22:40:51.760478+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-valverde-oauth-veil-00.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   VEIL (Verified Ephemeral Identity Layer) is a security profile of
   OAuth 2.1 for privacy-preserving identity verification.  It separates
   claims into two tracks: proof claims (boolean verification results,
   compliance flags, assurance levels) travel through standard token
   claims, while identity claims (name, date of birth, address,
   nationality) travel only through an ephemeral, single-consume channel
   that keeps personally identifiable information off long-lived tokens.
   Subject identifiers are pairwise by default.  Consent records are
   HMAC-protected.  Step-up authentication scales with operation
   sensitivity.  VEIL is the base profile for domain-specific
   extensions.
</abstract>
	  <version>00</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>VEIL: Verified Ephemeral Identity Layer for OAuth 2.1</title>
        

        <link href="/doc/draft-valverde-oauth-veil/"/>

        <id>urn:datatracker-ietf-org:event:1138549</id>
        
        <updated>2026-04-18T22:40:51.758672+00:00</updated>
        
        <published>2026-04-18T22:40:51.758672+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">New version accepted (logged-in submitter: Gustavo Valverde)</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>PACT: Private Agent Consent and Trust Profile for OAuth 2.1 and CIBA</title>
        

        <link href="/doc/draft-valverde-oauth-pact/"/>

        <id>urn:datatracker-ietf-org:event:1138547</id>
        
        <updated>2026-04-18T22:40:46.458118+00:00</updated>
        
        <published>2026-04-18T22:40:46.458118+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">Changed document external resources from: None to:&lt;br&gt;&lt;br&gt;github_repo https://github.com/gustavovalverde/zentity (Zentity)&lt;br&gt;webpage https://zentity.xyz/ (Zentity)</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_document</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>PACT: Private Agent Consent and Trust Profile for OAuth 2.1 and CIBA</title>
        

        <link href="/doc/draft-valverde-oauth-pact/"/>

        <id>urn:datatracker-ietf-org:event:1138546</id>
        
        <updated>2026-04-18T22:40:45.715167+00:00</updated>
        
        <published>2026-04-18T22:40:45.715167+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-valverde-oauth-pact-00.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   PACT (Private Agent Consent and Trust Profile) is a security profile
   of OAuth 2.1 for privacy-preserving agent delegation.  It extends
   VEIL and composes OIDC CIBA Core 1.0 and OAuth Token Exchange (RFC
   8693).  PACT defines a durable-host plus ephemeral-session control
   plane, a delegation token claim vocabulary, runtime identity proofs
   using Ed25519 JWTs, capability grants with typed constraints and
   usage limits, risk-graduated consent routing, and claim narrowing on
   token exchange to non-agent audiences.
</abstract>
	  <version>00</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>PACT: Private Agent Consent and Trust Profile for OAuth 2.1 and CIBA</title>
        

        <link href="/doc/draft-valverde-oauth-pact/"/>

        <id>urn:datatracker-ietf-org:event:1138545</id>
        
        <updated>2026-04-18T22:40:45.713022+00:00</updated>
        
        <published>2026-04-18T22:40:45.713022+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">New version accepted (logged-in submitter: Gustavo Valverde)</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>VEIL: Verified Ephemeral Identity Layer for OAuth 2.1</title>
        

        <link href="/doc/draft-valverde-oauth-veil/"/>

        <id>urn:datatracker-ietf-org:event:1138548</id>
        
        <updated>2026-04-18T22:39:27.714968+00:00</updated>
        
        <published>2026-04-18T22:39:27.714968+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>PACT: Private Agent Consent and Trust Profile for OAuth 2.1 and CIBA</title>
        

        <link href="/doc/draft-valverde-oauth-pact/"/>

        <id>urn:datatracker-ietf-org:event:1138544</id>
        
        <updated>2026-04-18T22:38:34.601263+00:00</updated>
        
        <published>2026-04-18T22:38:34.601263+00:00</published>
        
        <author>
            <name>Gustavo Valverde</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138409</id>
        
        <updated>2026-04-17T15:41:43.937642+00:00</updated>
        
        <published>2026-04-17T15:41:43.937642+00:00</published>
        
        <author>
            <name>Morgan Condie</name>
        </author>

        <content type="html">Placed on agenda for telechat - 2026-04-30</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>scheduled_for_telechat</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138384</id>
        
        <updated>2026-04-17T12:09:05.027795+00:00</updated>
        
        <published>2026-04-17T12:09:05.027795+00:00</published>
        
        <author>
            <name>Deb Cooley</name>
        </author>

        <content type="html">Ballot has been issued</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>sent_ballot_announcement</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138383</id>
        
        <updated>2026-04-17T12:09:04.664332+00:00</updated>
        
        <published>2026-04-17T12:09:04.664332+00:00</published>
        
        <author>
            <name>Deb Cooley</name>
        </author>

        <content type="html">[Ballot Position Update] New position, Yes, has been recorded for Deb Cooley</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_ballot_position</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138382</id>
        
        <updated>2026-04-17T12:09:04.647233+00:00</updated>
        
        <published>2026-04-17T12:09:04.647233+00:00</published>
        
        <author>
            <name>Deb Cooley</name>
        </author>

        <content type="html">Created &quot;Approve&quot; ballot</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>created_ballot</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138381</id>
        
        <updated>2026-04-17T12:09:04.290296+00:00</updated>
        
        <published>2026-04-17T12:09:04.290296+00:00</published>
        
        <author>
            <name>Deb Cooley</name>
        </author>

        <content type="html">IESG state changed to &lt;b&gt;IESG Evaluation&lt;/b&gt; from Waiting for AD Go-Ahead</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_state</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Browser Session Establishment Using OAuth 2.0 Token Exchange and Short-Lived Authorization Codes</title>
        

        <link href="/doc/draft-moros-oauth-browser-session-handoff/"/>

        <id>urn:datatracker-ietf-org:event:1138316</id>
        
        <updated>2026-04-17T04:34:13.413140+00:00</updated>
        
        <published>2026-04-17T04:34:13.413140+00:00</published>
        
        <author>
            <name>Gio Moros</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-moros-oauth-browser-session-handoff-00.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   This document specifies a usage profile that composes OAuth 2.0 Token
   Exchange [RFC8693] with a short-lived, single-use authorization code
   to establish an authenticated browser session at a Relying Party (RP)
   on behalf of a user authenticated at an Identity Provider (IdP)
   operating an independent OAuth 2.0 Security Token Service (STS).  The
   server-to-server leg uses RFC 8693 to convey user identity and
   authorization context to the RP&#x27;s STS, which issues an RP-scoped
   access token.  A short-lived opaque code is then used to mediate
   delivery of session state into the user&#x27;s browser without ever
   exposing the access token on the front channel.

   The profile is designed to avoid the class of front-channel token
   leakage (browser history, HTTP Referer header, intermediary access
   logs) that motivated the deprecation of the OAuth 2.0 implicit grant
   in [RFC9700].  The profile also defines a minimum claims contract on
   the RP-issued access token to enable stateless authorization
   enforcement at the RP without synchronous callbacks to the IdP.
</abstract>
	  <version>00</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Browser Session Establishment Using OAuth 2.0 Token Exchange and Short-Lived Authorization Codes</title>
        

        <link href="/doc/draft-moros-oauth-browser-session-handoff/"/>

        <id>urn:datatracker-ietf-org:event:1138315</id>
        
        <updated>2026-04-17T04:34:13.410963+00:00</updated>
        
        <published>2026-04-17T04:34:13.410963+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Browser Session Establishment Using OAuth 2.0 Token Exchange and Short-Lived Authorization Codes</title>
        

        <link href="/doc/draft-moros-oauth-browser-session-handoff/"/>

        <id>urn:datatracker-ietf-org:event:1138314</id>
        
        <updated>2026-04-17T04:31:27.374595+00:00</updated>
        
        <published>2026-04-17T04:31:27.374595+00:00</published>
        
        <author>
            <name>Gio Moros</name>
        </author>

        <content type="html">Request for posting confirmation emailed  to submitter and authors: Gio Moros &lt;Geomoherna@gmail.com&gt;, Gio Moros &lt;Gio@midaslabs.ca&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Browser Session Establishment Using OAuth 2.0 Token Exchange and Short-Lived Authorization Codes</title>
        

        <link href="/doc/draft-moros-oauth-browser-session-handoff/"/>

        <id>urn:datatracker-ietf-org:event:1138313</id>
        
        <updated>2026-04-17T04:30:40.859490+00:00</updated>
        
        <published>2026-04-17T04:30:40.859490+00:00</published>
        
        <author>
            <name>Gio Moros</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138271</id>
        
        <updated>2026-04-16T22:27:12.557031+00:00</updated>
        
        <published>2026-04-16T22:27:12.557031+00:00</published>
        
        <author>
            <name>Michael Jones</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-ietf-oauth-rfc7523bis-09.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
	  <abstract>   This document updates RFC7521, RFC7522, RFC7523 and RFC9126 with
   respect to the treatment of audience values in OAuth 2.0 Client
   Assertion Authentication and Assertion-based Authorization Grants to
   address a security vulnerability identified in the previous
   requirements for those audience values in multiple OAuth 2.0
   specifications.
</abstract>
	  <version>10</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138270</id>
        
        <updated>2026-04-16T22:27:12.554900+00:00</updated>
        
        <published>2026-04-16T22:27:12.554900+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138269</id>
        
        <updated>2026-04-16T22:27:05.735177+00:00</updated>
        
        <published>2026-04-16T22:27:05.735177+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">Request for posting confirmation emailed to previous authors: Brian Campbell &lt;bcampbell@pingidentity.com&gt;, Chuck Mortimore &lt;charliemortimore@gmail.com&gt;, Filip Skokan &lt;panva.ip@gmail.com&gt;, Michael Jones &lt;michael_b_jones@hotmail.com&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138268</id>
        
        <updated>2026-04-16T22:27:05.356952+00:00</updated>
        
        <published>2026-04-16T22:27:05.356952+00:00</published>
        
        <author>
            <name>Michael Jones</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Transaction Tokens For Agents</title>
        

        <link href="/doc/draft-araut-oauth-transaction-tokens-for-agents/"/>

        <id>urn:datatracker-ietf-org:event:1138262</id>
        
        <updated>2026-04-16T21:12:35.340881+00:00</updated>
        
        <published>2026-04-16T21:12:35.340881+00:00</published>
        
        <author>
            <name>Ashay Raut</name>
        </author>

        <content type="html">This document now replaces &lt;b&gt;draft-oauth-transaction-tokens-for-agents&lt;/b&gt; instead of None</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_document</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Transaction Tokens For Agents</title>
        

        <link href="/doc/draft-araut-oauth-transaction-tokens-for-agents/"/>

        <id>urn:datatracker-ietf-org:event:1138261</id>
        
        <updated>2026-04-16T21:12:34.996017+00:00</updated>
        
        <published>2026-04-16T21:12:34.996017+00:00</published>
        
        <author>
            <name>Ashay Raut</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-araut-oauth-transaction-tokens-for-agents-00.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   This document specifies an extension to the OAUTH-TXN-TOKENS
   (https://drafts.oauth.net/oauth-transaction-tokens/draft-ietf-oauth-
   transaction-tokens.html) to support agent context propagation within
   Transaction Tokens for agent-based workloads.  The extension defines
   the use of the act field to identify the agent performing the action,
   and leverages the existing sub field (as defined in the base
   Transaction Tokens specification) to represent the principal.  The
   sub field is populated according to the rules specified in OAUTH-TXN-
   TOKENS (https://drafts.oauth.net/oauth-transaction-tokens/draft-ietf-
   oauth-transaction-tokens.html), based on the &#x27;subject_token&#x27; provided
   in the token request.  For autonomous agents operating independently,
   the sub field represents the agent itself.  These mechanisms enable
   services within the call graph to make more granular access control
   decisions, thereby enhancing security.
</abstract>
	  <version>00</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Transaction Tokens For Agents</title>
        

        <link href="/doc/draft-araut-oauth-transaction-tokens-for-agents/"/>

        <id>urn:datatracker-ietf-org:event:1138260</id>
        
        <updated>2026-04-16T21:12:34.993852+00:00</updated>
        
        <published>2026-04-16T21:12:34.993852+00:00</published>
        
        <author>
            <name>Ashay Raut</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Transaction Tokens For Agents</title>
        

        <link href="/doc/draft-araut-oauth-transaction-tokens-for-agents/"/>

        <id>urn:datatracker-ietf-org:event:1138259</id>
        
        <updated>2026-04-16T21:10:49.728966+00:00</updated>
        
        <published>2026-04-16T21:10:49.728966+00:00</published>
        
        <author>
            <name>Ashay Raut</name>
        </author>

        <content type="html">Request for posting confirmation emailed  to submitter and authors: Ashay Raut &lt;asharaut@amazon.com&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Transaction Tokens For Agents</title>
        

        <link href="/doc/draft-araut-oauth-transaction-tokens-for-agents/"/>

        <id>urn:datatracker-ietf-org:event:1138258</id>
        
        <updated>2026-04-16T21:09:48.702468+00:00</updated>
        
        <published>2026-04-16T21:09:48.702468+00:00</published>
        
        <author>
            <name>Ashay Raut</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138239</id>
        
        <updated>2026-04-16T18:04:44.462374+00:00</updated>
        
        <published>2026-04-16T18:04:44.462374+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">IANA Review state changed to &lt;b&gt;Version Changed - Review Needed&lt;/b&gt; from IANA - Not OK</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>changed_state</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138238</id>
        
        <updated>2026-04-16T18:04:44.209168+00:00</updated>
        
        <published>2026-04-16T18:04:44.209168+00:00</published>
        
        <author>
            <name>Michael Jones</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-ietf-oauth-rfc7523bis-08.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
	  <abstract>   This document updates RFC7521, RFC7522, RFC7523 and RFC9126 with
   respect to the treatment of audience values in OAuth 2.0 Client
   Assertion Authentication and Assertion-based Authorization Grants to
   address a security vulnerability identified in the previous
   requirements for those audience values in multiple OAuth 2.0
   specifications.
</abstract>
	  <version>10</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138237</id>
        
        <updated>2026-04-16T18:04:44.204937+00:00</updated>
        
        <published>2026-04-16T18:04:44.204937+00:00</published>
        
        <author>
            <name>Brian Campbell</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138236</id>
        
        <updated>2026-04-16T18:04:15.027688+00:00</updated>
        
        <published>2026-04-16T18:04:15.027688+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">Request for posting confirmation emailed to previous authors: Brian Campbell &lt;bcampbell@pingidentity.com&gt;, Chuck Mortimore &lt;charliemortimore@gmail.com&gt;, Filip Skokan &lt;panva.ip@gmail.com&gt;, Michael Jones &lt;michael_b_jones@hotmail.com&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>Updates to OAuth 2.0 JSON Web Token (JWT) Client Authentication and Assertion-Based Authorization Grants</title>
        

        <link href="/doc/draft-ietf-oauth-rfc7523bis/"/>

        <id>urn:datatracker-ietf-org:event:1138235</id>
        
        <updated>2026-04-16T18:04:14.610797+00:00</updated>
        
        <published>2026-04-16T18:04:14.610797+00:00</published>
        
        <author>
            <name>Michael Jones</name>
        </author>

        <content type="html">Uploaded new revision</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          <stream>ietf</stream>
          <group>oauth</group>
          <shepherd>Rifaat Shekh-Yusef</shepherd>
          <ad>Deb Cooley</ad>
          
          <state type="draft">active</state>
          
          <state type="draft-iana-experts">reviews-assigned</state>
          
          <state type="draft-iana-review">changed</state>
          
          <state type="draft-iesg">iesg-eva</state>
          
          <state type="draft-stream-ietf">sub-pub</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>OAuth 2.0 Entity Profiles</title>
        

        <link href="/doc/draft-mora-oauth-entity-profiles/"/>

        <id>urn:datatracker-ietf-org:event:1137991</id>
        
        <updated>2026-04-15T19:38:05.238161+00:00</updated>
        
        <published>2026-04-15T19:38:05.238161+00:00</published>
        
        <author>
            <name>Sreyantha Mora</name>
        </author>

        <content type="html">New version available: &lt;b&gt;draft-mora-oauth-entity-profiles-01.txt&lt;/b&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_revision</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
	  <abstract>   This specification introduces Entity Profiles as a mechanism to
   categorize OAuth 2.0 entities—clients and subjects—based on their
   operational context.  Entity Profiles provide structured descriptors
   for the client initiating the OAuth flow and the subject represented
   in tokens.  This document defines new JWT Claim names and metadata
   parameters for use in JWTs issued or consumed in OAuth flows,
   including but not limited to access tokens, ID tokens, JWT
   authorization grant assertions, and transaction tokens, as well as in
   token introspection responses, dynamic client registration, and
   Authorization Server metadata.  It also defines vocabulary for
   classifying acting entities within delegation chains.
</abstract>
	  <version>01</version>
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>OAuth 2.0 Entity Profiles</title>
        

        <link href="/doc/draft-mora-oauth-entity-profiles/"/>

        <id>urn:datatracker-ietf-org:event:1137990</id>
        
        <updated>2026-04-15T19:38:05.235931+00:00</updated>
        
        <published>2026-04-15T19:38:05.235931+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">New version approved</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    <entry>
        
        <title>OAuth 2.0 Entity Profiles</title>
        

        <link href="/doc/draft-mora-oauth-entity-profiles/"/>

        <id>urn:datatracker-ietf-org:event:1137989</id>
        
        <updated>2026-04-15T19:37:24.282975+00:00</updated>
        
        <published>2026-04-15T19:37:24.282975+00:00</published>
        
        <author>
            <name>(System)</name>
        </author>

        <content type="html">Request for posting confirmation emailed to previous authors: Pamela Dingle &lt;pamela.dingle@microsoft.com&gt;, Sreyantha Mora &lt;sreyanthmora@microsoft.com&gt;</content>

        <ietf xmlns="http://ietf.org/atom/datatracker/community">
          <type>new_submission</type>
          
          <group>none</group>
          
          
          
          <state type="draft">active</state>
          
          <state type="draft-iesg">idexists</state>
          
          
	  
        </ietf>
    </entry>
    
    
</feed>
