@trwnhinfinite love β΄³ "oauth i think HTTP auth-schemes for WWW-Authenticate and Authorization headers are a good idea to signal which ways of auth are supported. profiling oauth is one step; advertising it as an auth-scheme is a good way to remove ambiguity"

Yes, if you make a request to a resource server and it's unauthenticated respond with WWW-Authenticate.

But you probably don't want to use Basic auth with a decentralized network of applications because then all the applications know your full password..

0

If you have a fediverse account, you can quote this note from your own instance. Search https://hachyderm.io/users/thisismissem/statuses/116099052597641141 on your instance and quote it. (Note that quoting is not supported in Mastodon.)