<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	
	>
<channel>
	<title>
	Comments on: Implicit Flow vs. Code Flow with PKCE	</title>
	<atom:link href="https://christianlydemann.com/implicit-flow-vs-code-flow-with-pkce/feed/" rel="self" type="application/rss+xml" />
	<link>https://christianlydemann.com/implicit-flow-vs-code-flow-with-pkce/</link>
	<description>Advanced Angular Training Made Simple</description>
	<lastBuildDate>Fri, 16 Sep 2022 16:24:00 +0000</lastBuildDate>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.7.4</generator>
	<item>
		<title>
		By: Mecki		</title>
		<link>https://christianlydemann.com/implicit-flow-vs-code-flow-with-pkce/#comment-167443</link>

		<dc:creator><![CDATA[Mecki]]></dc:creator>
		<pubDate>Fri, 16 Sep 2022 16:24:00 +0000</pubDate>
		<guid isPermaLink="false">https://christianlydemann.com/?p=3732#comment-167443</guid>

					<description><![CDATA[A man-in-the-middle cannot just see traffic, he can also manipulate traffic and thus also change the   code_challenge and code_challende_method as he desires. Also if you can see the authorization token, you can see any requested access token fetched with it later on. I fail to see how this is supposed to protect against a real MitM attack.]]></description>
			<content:encoded><![CDATA[<p>A man-in-the-middle cannot just see traffic, he can also manipulate traffic and thus also change the   code_challenge and code_challende_method as he desires. Also if you can see the authorization token, you can see any requested access token fetched with it later on. I fail to see how this is supposed to protect against a real MitM attack.</p>
]]></content:encoded>
		
			</item>
		<item>
		<title>
		By: Raja		</title>
		<link>https://christianlydemann.com/implicit-flow-vs-code-flow-with-pkce/#comment-23019</link>

		<dc:creator><![CDATA[Raja]]></dc:creator>
		<pubDate>Wed, 27 Nov 2019 11:04:00 +0000</pubDate>
		<guid isPermaLink="false">https://christianlydemann.com/?p=3732#comment-23019</guid>

					<description><![CDATA[Nice explanation. I will try with React. Thanks a lot.]]></description>
			<content:encoded><![CDATA[<p>Nice explanation. I will try with React. Thanks a lot.</p>
]]></content:encoded>
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 0/1322 objects using Memcache
Page Caching using Disk: Enhanced 
Minified using Disk
Database Caching using Disk (Request-wide modification query)

Served from: christianlydemann.com @ 2026-02-26 17:27:25 by W3 Total Cache
-->