You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Is your feature request related to a problem? Please describe.
Defence in depth
Describe the solution you'd like
MSAL's PKCE implementation uses a code verifier of 43 bytes. This is the minimum described in the spec RFC 7636.
To benefit from added entropy, MSAL should use the maximum described in the spec, i.e. 96 bytes
Is your feature request related to a problem? Please describe.
Defence in depth
Describe the solution you'd like
MSAL's PKCE implementation uses a code verifier of 43 bytes. This is the minimum described in the spec RFC 7636.
To benefit from added entropy, MSAL should use the maximum described in the spec, i.e. 96 bytes
For more details see the comments on this PR https://github.com/microsoft/Git-Credential-Manager-Core/pull/102/files
The text was updated successfully, but these errors were encountered: