# Papers

OpenID Spec for FinApp - fapi\
<https://bitbucket.org/openid/fapi/src/master/Financial_API_WD_002.md?at=master&fileviewer=file-view-default>

[http://wiki.openid.net/w/page/12995200/OpenID Security Best Practices](http://wiki.openid.net/w/page/12995200/OpenID%20Security%20Best%20Practices)\
<https://portswigger.net/research/hidden-oauth-attack-vectors>
