01OAuth 2.1 and PKCE compliance auditing for modern auth flows
02Comprehensive JWT security validation for audience, issuer, and signatures
03Detection of common anti-patterns like algorithm confusion and weak secrets
04MCP server authorization pattern enforcement and implementation guidance
05Token exchange verification to prevent insecure token forwarding
060 GitHub stars