Open in app
karthik
249 Followers
About

Sign in

249 Followers
About
Open in app
karthik

karthik

Nov 27, 2018·1 min read

Thank you.

No, it is not safe to put the client_id and secret in front-end because it is similar to a user name and password. You can use implicit_grant type if it is a JavaScript App. But, still I don’t consider that as secure. You should either use client_credentials for machine-machine communication or Authorization code grant flow for browser based flows.

karthik

IAM Architect www.linkedin.com/in/nagkarthik

Hey man, awesome tutorial.
1
1

Alex

More from karthik

IAM Architect www.linkedin.com/in/nagkarthik

More From Medium

Did Buzz Aldrin Just Admit We Never Landed On The Moon?

Lukas Schultz

This Is How the Elites Plan to Stop the Mother of All Bubbles From Bursting

Concoda in Concoda

The 8 Strategies I Use to Maintain 14% Body Fat as a Female

Ashley Richmond in In Fitness And In Health

Tim Cook’s 5-Word Response to Facebook Is Brutal and Brilliant at the Same Time

inc. magazine in Inc Magazine

How To Make Someone Fall In Love With You

Isvari

Run Your Python Code as Fast as C

Marcel Moosbrugger in Towards Data Science

We Have a Bombshell to Announce: Apple First Keynote of 2021

JuanSC in Mac O’Clock

The Beautiful Gamma Function and the Genius Who Discovered It

Kasper Müller in Cantor’s Paradise

About

Help

Legal

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store