We’ve made some important updates to the documentation and sample code for web developers using Login with Amazon. You can now download the updated Developer Guide
and Getting Started Guide for Websites
The Developer Guide for Websites
includes a change to the Implicit Grant, adding a secure HTTP call to https://api.amazon.com/auth/O2/tokeninfo
in order to verify the access token. Clients that use the Implicit Grant should use that API to verify that the client identifier in the token matches their own client identifier.
The redirect_uri parameter for the Access Token Request in the Authorization Code Grant is now required.
For web developers adding a Login with Amazon button to HTTPS sites, the Getting Started Guide for Websites
example has been updated at http://login.amazon.com/website
We’ve also updated the Java, Ruby, Python, and PHP examples in the Getting Started Guide for Websites
to use the new tokeninfo API.
Thanks for using Login with Amazon!
We are hiring! If you want to help us create a best-in-class customer experience, please check us out