A single unauthenticated connection gives attackers a full shell; credential theft observed in under three minutes on honeypot servers.
This project is for local testing/investigation. Make sure usage complies with provider terms. For downstream applications that need to redirect users back to their own callback URL after OAuth ...