Hi,
I'm trying to get clearer on OAuth on OpenSocial / Shindig and have a few questions. Sorry if these questions are not appropriate for this list. [1] opensocial_*id According to following document: https://sites.google.com/site/oauthgoog/2leggedoauth/2opensocialrestapi OpenSocial container sends OAuth Consumer Request query with * opensocial_ownerid * opensocial_viewerid * opensocial_appid But when I look at google code gadgets site document: http://code.google.com/apis/gadgets/docs/reference/#gadgets.io It's said to send following query params which names are slightly different: * opensocial_owner_id * opensocial_viewer_id * opensocial_app_id Actual Shindig implementation looks like sending queries same as google code gadgets site explanation: * opensocial_owner_id * opensocial_viewer_id * opensocial_app_id Is the one on oauthgoog just typo or do they have different meaning? [2] xoauth_public_key According to following proposal: http://dirk.balfanz.googlepages.com/oauth_key_rotation.html Public Key Identifier should be specified using "xoauth_public_key". Same on google code gadgets site. But actual implementation in Shindig seems like using "xoauth_signature_publickey". Which is correct or should they be treated differently? [3] xoauth_app_url According to following proposal: http://dirk.balfanz.googlepages.com/oauth_gadget_extension.html App url should be specified using "xoauth_app_url". But it looks like there's "opensocial_app_url" mentioned on google code gadgets site. Shindig is implemented with "opensocial_app_url" too. Which is correct or should they be treated differently? Thanks in advance.

