Some more info on OAuth 2.1 from the @oktadev blog:
OAuth 2.1: How many RFCs does it take to change a light bulb?
developer.okta.com/blog/2019…
3
8
2
25
If you're really using the password grant for migration, you can always define your own extension to enable that same migration.
In our experience, most implementations did not use it for migrations, and instead made new implementations prompting the user for their password.
Feb 20, 2020 · 10:04 PM UTC
1

