OAuth 2.0 Playground

A browser-based OAuth 2.0 client for testing and debugging authorization flows.

Authorization code with PKCE, client credentials, implicit, and device grant. Works with Keycloak, Auth0, Google, WSO2, and FIWARE Keyrock. Credentials and tokens stay in your browser. Security boundaries.

Client Secret is saved locally only. For security considerations, the value can't be shared.
Application isn't configured
Authorization code needed
Token response:
 
Refresh token needed
User info URL needed
Get user info response:
 
End session URL needed
Revocation URL needed
Revocation URL needed
Revoke response: