OAuth 2.0 brings several variations, called flows. But which of them can be used for JavaScript-Applications and what are the consequences in view of security? This session gives an answer to this question. It shows which flows are suitable in which situations, how to implement them with JavaScript as well as the pros and cons of the existing options.