Files
headquarter/openspec/changes/archive/2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.md
T
Developer c8db6ce933 fix: disable native touch panning on mobile terminal and archive specs
- Change mobile terminal CSS to use touch-action: none and
  overscroll-behavior: none so the custom touch handler owns swipes
- Archive completed/partial OpenSpec specs to
  openspec/changes/archive/2026-06-14-completed-specs-archive/
- Regenerate project maps

Quality gates: npm run typecheck, npm run lint (apps/web)
2026-06-14 18:07:01 +00:00

792 B

2026-05-17-auth-oauth/specs/auth-oauth

dir: 2026-05-17-auth-oauth/specs/auth-oauth

index: 2026-05-17-auth-oauth/specs/auth-oauth/.pi-map.index.md

role

Defines authentication and authorization requirements for OAuth2/OIDC integration with Authentik identity provider.

files

  • spec.md | Specifies OAuth2/OIDC authentication, session security, token refresh, and logout requirements for a web application using Authentik as the identity provider. | dep: Authentik, JWKS, OAuth2, OIDC, HTTP cookies, database

arch

Specification-driven security architecture using standard OAuth2/OIDC flows with session management, token lifecycle, and secure logout patterns.

tags

oauth2, oidc, authentik, spec, specifies, authentication, session, security

symbols

workflows

dirty