Your OAuth Clients Belong in Your Codebase
Why first-party OAuth clients should be declared, reviewed, tested, and reconciled by the application that depends on them—not recreated in an external dashboard.
Blog
Auth, hierarchical authorization, EF Core, and practical .NET application security — release by release.
Why first-party OAuth clients should be declared, reviewed, tested, and reconciled by the application that depends on them—not recreated in an external dashboard.
SqlOS 3.20 closes high-priority session, MFA, silent SSO, authorization, URL-generation, and login-CSRF gaps while keeping the normal embedded .NET setup automatic.
Upgrade a simple EF Core application so organizations, workspaces, and projects become one authorization hierarchy synchronized through SaveChanges and filtered in SQL.
SqlOS 3.19 hardens remote OAuth inputs and public failures, improves validation performance, and adds secure magic-link login without changing the password-first local setup.
SqlOS 3.18 hardens signing keys, OIDC, SAML, MFA, password reset, sessions, and refresh rotation while keeping the default .NET setup local and automatic.