Learn from experts and connect with global tech leaders at POST/CON 24. Register by March 26 to save 30%.

Learn more →
X

What is PKCE?

Avatar

PKCE, which stands for “Proof of Key Code Exchange” and is pronounced “pixy,” is an extension of the OAuth 2.0 protocol that…

What is OAuth 2.0?

Avatar

OAuth 2.0 is an authorization framework that enables users to safely share their data between different applications. It is an industry standard…

How to access Google APIs using OAuth 2.0 in Postman

Avatar

Don’t forget to register here to attend POST/CON 24, Postman’s biggest API conference ever: April 30 to May 1, 2024 in San…

Introducing Postman’s New Parameters for OAuth 2.0

Giridhar

Authentication is a fundamental part of APIs, and over the years OAuth 2.0 has gained tremendous adoption amongst the masses as the…

OAuth 2.0: Implicit Flow is Dead, Try PKCE Instead

Avatar

There are a number of OAuth 2.0 flows that can be used in various scenarios. The Implicit flow was previously recommended for…

Get Greater Visibility With HTTP Header Live Preview in Postman

Avatar

HTTP headers are a cornerstone of how the web works, allowing clients and servers to pass information back and forth. Headers are…

How Postman Feeds My Sushi Addiction

Avatar

The Sushi Selector is a Postman Collection that recommends a nearby sushi spot. When run locally with the Postman collection runner, the collection…

Postman makes authorization stronger and easier

Avatar

API authorization is a top concern at Postman. We’ve always built features to help you manage authorization for your protected resources, such…

Postman's annual user conference

Gain new skills through hands-on workshops, hear from industry leaders, and join conversations about innovation, APIs, and the future of software.