Skip to content

Conformance coverage for SEP-837 (application_type during DCR) #283

Description

@localden

SEP-837 requires MCP clients to specify an appropriate application_type (native or web) during Dynamic Client Registration so OIDC authorization servers can apply the correct redirect-URI constraints.

Only presence + value validity is wire-observable — the harness can't determine the client's true class out-of-band, so the class-specific SHOULDs are excluded.

Spec: authorization §application-type-and-redirect-uri-constraints
Host: the shared createAuthServer DCR handler — fires in every auth scenario that performs DCR; no new scenario.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions