[{"data":1,"prerenderedAt":94},["ShallowReactive",2],{"blog-enhancing-security-and-flexibility-with-oauth-app-updates-on-github":3},{"_path":4,"_dir":5,"_draft":6,"_partial":6,"_locale":7,"title":8,"description":9,"date":10,"tags":11,"cover":17,"body":18,"_type":88,"_id":89,"_source":90,"_file":91,"_stem":92,"_extension":93},"/blog/enhancing-security-and-flexibility-with-oauth-app-updates-on-github","blog",false,"","Enhancing Security and Flexibility with OAuth App Updates on GitHub","GitHub introduces expiring access tokens, refresh tokens, and multiple redirect URIs for OAuth apps to improve security and developer experience.","2026-08-15",[12,13,14,15,16],"oauth","security","github","developer","api",true,{"type":19,"children":20,"toc":80},"root",[21,30,36,42,47,53,58,64,69,75],{"type":22,"tag":23,"props":24,"children":26},"element","h2",{"id":25},"introduction",[27],{"type":28,"value":29},"text","Introduction",{"type":22,"tag":31,"props":32,"children":33},"p",{},[34],{"type":28,"value":35},"GitHub rolled out important updates to their OAuth app and GitHub App platforms designed to improve application security and developer experience. These changes focus on better token management and flexible authorization flows.",{"type":22,"tag":23,"props":37,"children":39},{"id":38},"expiring-access-tokens-and-refresh-tokens",[40],{"type":28,"value":41},"Expiring Access Tokens and Refresh Tokens",{"type":22,"tag":31,"props":43,"children":44},{},[45],{"type":28,"value":46},"OAuth apps can now opt into access tokens that expire. To maintain user sessions smoothly, refresh tokens allow apps to securely obtain new access tokens without requiring repeated user logins. This mechanism reduces token misuse risk and aligns with modern security best practices.",{"type":22,"tag":23,"props":48,"children":50},{"id":49},"support-for-multiple-redirect-uris",[51],{"type":28,"value":52},"Support for Multiple Redirect URIs",{"type":22,"tag":31,"props":54,"children":55},{},[56],{"type":28,"value":57},"Previously limited to a single redirect URI, OAuth apps now support multiple redirect URIs. This gives developers the ability to handle diverse workflows and environments (such as development, staging, and production) more effectively.",{"type":22,"tag":23,"props":59,"children":61},{"id":60},"implications-for-developers",[62],{"type":28,"value":63},"Implications for Developers",{"type":22,"tag":31,"props":65,"children":66},{},[67],{"type":28,"value":68},"These updates enhance security by limiting token longevity and provide flexibility in implementing OAuth flows. Developers are encouraged to review their OAuth configurations to leverage these capabilities and ensure their applications meet the highest standards of security and usability.",{"type":22,"tag":23,"props":70,"children":72},{"id":71},"conclusion",[73],{"type":28,"value":74},"Conclusion",{"type":22,"tag":31,"props":76,"children":77},{},[78],{"type":28,"value":79},"GitHub's enhancements reflect ongoing commitments to secure and user-friendly app development. Embracing these features helps developers protect user data while improving application robustness.",{"title":7,"searchDepth":81,"depth":81,"links":82},2,[83,84,85,86,87],{"id":25,"depth":81,"text":29},{"id":38,"depth":81,"text":41},{"id":49,"depth":81,"text":52},{"id":60,"depth":81,"text":63},{"id":71,"depth":81,"text":74},"markdown","content:blog:enhancing-security-and-flexibility-with-oauth-app-updates-on-github.md","content","blog/enhancing-security-and-flexibility-with-oauth-app-updates-on-github.md","blog/enhancing-security-and-flexibility-with-oauth-app-updates-on-github","md",1787815129581]