# openspec/changes/archive/2026-06-14-completed-specs-archive/auth-oauth dir: openspec/changes/archive/2026-06-14-completed-specs-archive/auth-oauth index: openspec/changes/archive/2026-06-14-completed-specs-archive/auth-oauth/.pi-map.index.md ## role Defines authentication and authorization requirements for an OAuth2/OIDC-based system using Authentik as the identity provider. ## files - spec.md | Specifies authentication requirements for an OAuth2/OIDC system using Authentik with secure session handling, token refresh, and logout | dep: Authentik OIDC provider, Database (User model), pytest, mypy, ruff ## arch Specification-driven security architecture using standard OAuth2/OIDC flows with session management, token lifecycle handling, and secure logout patterns. ## tags spec, specifies, authentication, requirements, oauth2, oidc, system, authentik ## symbols - ## workflows - ## dirty -