Overview
Canvas by Instructure is removing support for legacy LTI specifications (LTI 1.1 and LTI 2.0) and migrating all tools to LTI 1.3. This document summarizes the information that is finalized and ready to share.
Project Timeline
As a long-standing partner of 1EdTech and champion of the open LTI specification, Instructure is committed to complying with current best practices while minimizing disruption for Canvas customers. 1EdTech deprecated the LTI 1.1 and 2.0 specs in 2019. In light of rapid advancements in AI and growing focus on data privacy and security, it is time to focus on migration to LTI 1.3 adherence. This will be a broad initiative that impacts Instructure and third-party Partner owned apps. Full deprecation for LTI 1.1 and 2.0 specs will not happen before December 2027. Change management updates and resources will continue to be posted on this page as they are made available.
Why the Change
LTI 1.1 and LTI 2.0 use OAuth 1 with a shared secret between the institution and Instructure. LTI 1.3 uses OAuth 2 with asymmetric signing, so no secret needs to be shared, making it more secure.
Affected Instructure-Owned Apps
The following Instructure-owned apps are listed on the migration roadmap and will have finalized plans before the deprecation dates are finalized. Finalized plans will be posted on this page and in appropriate release notes.
- Box
- Chat
- Commons
- Google Drive
- Mastery by Instructure
- New Quizzes
- Office 365
- Redirect
- SCORM
- Studio
- YouTube/Vimeo
Redirect and New Quizzes are becoming native Canvas functionality rather than migrating to LTI 1.3 like the other apps.
Partner Tools
Third-party Partner owned integrated apps follow the Partner's own migration timeline, not Instructure's. Partners will be able to submit documentation and it will be added to this page in Q4.
Resources