diff --git a/server/oauth2.go b/server/oauth2.go index ecc619d669..05dd25d256 100644 --- a/server/oauth2.go +++ b/server/oauth2.go @@ -501,7 +501,7 @@ func (s *Server) parseAuthorizationRequest(r *http.Request) (*storage.AuthReques return nil, newErr("invalid_request", "Response type 'token' must be provided with type 'id_token' and/or 'code'") } if !rt.code { - // Either "id_token code" or "id_token" has been provided which implies the + // Either "id_token token" or "id_token" has been provided which implies the // implicit flow. Implicit flow requires a nonce value. // // https://openid.net/specs/openid-connect-core-1_0.html#ImplicitAuthRequest