Some discussion around this on the OAuth WG mailing list: <a href="https://www.ietf.org/mail-archive/web/oauth/current/msg14629.html" rel="nofollow">https://www.ietf.org/mail-archive/web/oauth/current/msg14629...</a>