patch
COMPANION-APP-OAUTH-SERVERSIDE-GATE.md
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).1. Decision D-SS.1 — Scope / identity parity for the native client
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).1. Decision D-SS.1 — Scope / identity parity for the native client.Adversarial argument
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).1. Decision D-SS.1 — Scope / identity parity for the native client.Adversarial argument.table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).1. Decision D-SS.1 — Scope / identity parity for the native client.Recommendation — Option (b) (product + eng call → owner ratification requested, §9)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).1. Decision D-SS.1 — Scope / identity parity for the native client.Verified state
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).2. Decision D-SS.2 — Hosted availability of the authorization/token endpoints
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).2. Decision D-SS.2 — Hosted availability of the authorization/token endpoints.Adversarial argument
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).2. Decision D-SS.2 — Hosted availability of the authorization/token endpoints.Recommendation — DECIDED: reuse `knowtation-mcp-gateway` (no new server)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).2. Decision D-SS.2 — Hosted availability of the authorization/token endpoints.Verified live server inventory (owner-confirmed 2026-06-06)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).2. Decision D-SS.2 — Hosted availability of the authorization/token endpoints.Verified live server inventory (owner-confirmed 2026-06-06).table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).2. Decision D-SS.2 — Hosted availability of the authorization/token endpoints.Verified state
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).3. Decision D-SS.3 — RFC 9207 iss emission on the redirect
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).3. Decision D-SS.3 — RFC 9207 iss emission on the redirect.Recommendation — CONFIRM (emit `iss`)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).3. Decision D-SS.3 — RFC 9207 iss emission on the redirect.Verified state
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).4. Decision D-SS.4 — Loopback redirect registration with a variable ephemeral port
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).4. Decision D-SS.4 — Loopback redirect registration with a variable ephemeral port.Adversarial argument
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).4. Decision D-SS.4 — Loopback redirect registration with a variable ephemeral port.Recommendation — CONFIRM, with a hard implementation obligation
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).4. Decision D-SS.4 — Loopback redirect registration with a variable ephemeral port.Verified state
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).5. Threat model → control (server side)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).5. Threat model → control (server side).table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).6. Precise server-side change list (for the FOLLOW-UP implementation phase)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).6. Precise server-side change list (for the FOLLOW-UP implementation phase).table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).7. 7-tier test obligations (per change C1–C6)
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).7. 7-tier test obligations (per change C1–C6).table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).8. Constraints honored
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).9. Approval table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).9. Approval table.table
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).Simple summary
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).Technical summary
4 hours ago
insert
Companion App — Server-Side OAuth Gate (client registration + scopes).Technical summary.table
4 hours ago