Loading...
Please wait a moment
Founded by passionate advocates of learning and innovation, Learni set out to make professional training accessible to everyone, everywhere in the world. Our team works in the largest cities such as Paris, Lyon, Marseille, and internationally, to support talents and organizations in their skills development.
Which format do you prefer?
30 free minutes with a training advisor — no commitment.
Loading available slots...
No-Code / Low-Code training in Leeds in November 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Cybersecurity training in Sheffield in November 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Professional Training training in Memphis in October 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Cybersecurity training in Oklahoma City in December 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
The Training PKCE 2026 - Securing OAuth for Modern Apps training is delivered in-person or remotely (blended-learning, e-learning, virtual classroom, remote in-person). At Learni, a Qualiopi-certified training organization, each program is designed to maximize skills acquisition, regardless of the training mode chosen.
The trainer alternates between demonstrative, interrogative, and active methods (through practical exercises and/or real-world scenarios). This pedagogical approach ensures concrete and directly applicable learning in the workplace.
To ensure the quality of the Training PKCE 2026 - Securing OAuth for Modern Apps training, Learni provides the following teaching resources:
For in-house training at a location external to Learni, the client ensures and commits to having all necessary teaching materials (IT equipment, internet connection...) for the proper conduct of the training action in accordance with the prerequisites indicated in the communicated training program.
The assessment of skills acquired during the Training PKCE 2026 - Securing OAuth for Modern Apps training is carried out through:
Learni is committed to the accessibility of its professional training programs. All our training programs are accessible to people with disabilities. Our teams are available to adapt teaching methods to your specific needs. Do not hesitate to contact us for any accommodation request.
Learni training programs are available for inter-company and intra-company settings, both in-person and remote. Registration is possible up to 48 business hours before the start of training. Our programs are eligible for OPCO, Pôle emploi, and FNE-Formation funding. Contact us to discuss your training project and funding possibilities.
Discovery of classic OAuth vulnerabilities and introduction to PKCE 2026 for public apps, installation of test environments with Node.js and Postman, generation of code verifier and challenge using SHA-256, practical exercises on Authorization Code flow with PKCE, analysis of real business cases affected by leaks, creation of a first secure prototype with complete documentation.
Hands-on with libraries like Auth0.js and oidc-client to implement PKCE in React or Vanilla JS, dynamic configuration of challenges and S256, simulation of CSRF and interception attacks to test robustness, development of an SPA connected to a mock OAuth provider, collaborative exercises on secure redirection and token exchange, production of a functional deliverable with audit logs.
Exploration of PKCE 2026 evolutions for hybrid apps and PKCE+, use of tools like OWASP ZAP and OAuth Toolbox for automated audits, strict validation of parameters and code rotation, practical cases on common production errors, pair workshops to secure a red thread enterprise project, generation of compliance reports and personalized optimization plans.
Deployment of PKCE apps on Vercel or Heroku with secure environment variables, integration into GitHub Actions CI/CD pipelines for automated PKCE tests, monitoring with Sentry to detect OAuth anomalies, simulation of real incidents and rapid remediation, finalization of the red thread project with expert code review, issuance of certificates and resources for enterprise maintenance.
Target audience
Web developers, security engineers, and software architects seeking to upskill in PKCE
Prerequisites
Basics of HTTP/HTTPS, knowledge of OAuth 2.0, and JavaScript
Loading...
Please wait a moment





























