πŸ”‘
Security

TigerStyle Scent

OAuth2 Authorization & API Access

"Leave your unique scent - secure OAuth2 authentication that marks your territory."

Key Features
  • βœ“ OAuth 2.1 implementation
  • βœ“ Secure token management
  • βœ“ API gateway integration
  • βœ“ Access control & permissions
  • βœ“ JWT token generation
  • βœ“ Refresh token rotation
  • βœ“ PKCE support
  • βœ“ Third-party app authorization
Integrations
  • β†’ External API services
  • β†’ Mobile applications
  • β†’ Third-party integrations
  • β†’ Single Sign-On (SSO) systems

Why Choose TigerStyle Scent?

πŸ”
Territory Marking

Like a cat marking territory with scent, Scent provides unique, secure OAuth2 tokens that identify authorized access.

🀝
Recognition & Trust

Cats recognize each other by scent. Scent enables secure authentication where systems recognize and trust each other.

πŸšͺ
Controlled Access

Just as cats control who enters their space, Scent manages precise API access permissions and authorization flows.

The Security Sentinel

TigerStyle Scent brings OAuth 2.1 authorization and secure API access to your WordPress ecosystem - marking your territory with cryptographic security.

The Scent Philosophy: Leave your unique scent - secure OAuth2 authentication that marks your territory.

Why β€œScent”?

Cats use scent to mark territory, identify friends, and communicate. Scent does the same for your digital territory:

  • Unique Identification - OAuth tokens are like digital scent markers
  • Territory Protection - Only authorized apps can access your APIs
  • Recognition - Systems recognize each other through secure tokens
  • Communication - Secure channels for external integrations

OAuth 2.1 Implementation

Scent implements the latest OAuth 2.1 standard with modern security practices:

  • PKCE (Proof Key for Code Exchange) - Protection against authorization code interception
  • Token Rotation - Automatic refresh token rotation for enhanced security
  • Scope Management - Granular permission control
  • Secure Storage - Encrypted token storage

How Scent Works

  1. App Registration - Third-party apps register with Scent
  2. Authorization Request - User approves app access with specific scopes
  3. Token Generation - Scent creates secure access tokens
  4. API Access - Apps use tokens to access your WordPress APIs
  5. Token Refresh - Automatic rotation maintains security

Use Cases

Scent enables powerful integrations:

  • Mobile Apps - Secure authentication for iOS/Android apps
  • External Services - Connect with third-party platforms safely
  • Headless WordPress - Modern JAMstack architectures
  • Microservices - Distributed system authentication

Security Features

Scent prioritizes security at every level:

  • JWT (JSON Web Tokens) - Industry-standard token format
  • Short-Lived Access Tokens - Minimize exposure window
  • Refresh Token Rotation - Prevent token theft
  • HTTPS Only - All OAuth flows require TLS
  • Scope Validation - Apps only get permissions they need

API Gateway Integration

Scent works as an API gateway for the TigerStyle ecosystem:

External App β†’ Scent OAuth β†’ Access Token β†’ TigerStyle APIs
                    ↓
            Heat, Whiskers, Dash, Life9

Permission Scopes

Fine-grained control over what apps can access:

  • heat:read - Read SEO settings
  • heat:write - Modify SEO configuration
  • whiskers:consent - Access consent data
  • dash:metrics - Read performance metrics
  • life9:backup - Trigger backups
  • life9:restore - Restore from backups

The Scent Promise

Just like Kyra knows who belongs in her space, Scent knows exactly who should access your APIs. Mark your digital territory with cryptographic security that only the right visitors can recognize.

Ready to Transform Your WordPress Site?

TigerStyle Scent works seamlessly with the entire TigerStyle ecosystem