Something went wrong. Try again.
A community based topic aggregation platform built on atproto
Something went wrong. Try again.
docs: document OAuth DPoP vote architecture change master
Add comprehensive documentation explaining why vote write-forward endpoints were removed: - OAuth DPoP tokens are cryptographically bound to client's private key - Backend cannot create DPoP proofs (doesn't have the key) - Solution: Clients write directly to their PDS using com.atproto.repo.createRecord/deleteRecord - AppView indexes votes from Jetstream for aggregation Also documented future work needed for subscriptions and blocking. See: docs/PRD_BACKLOG.md#oauth-dpop-token-architecture
Author Bretton Date (Nov 3, 2025, 1:02 AM UTC) Commit 9f788377 9f788377f66b975ed083a5d1acebd41aab0a8521 Parent 0a8e5c0a 0a8e5c0a732f6f9fe0b63f760bd9e99aa3f1d4ee