We don't have an ETA on oAuth but we're committed to providing it before too long. It's most likely that we'll go with oAuth 2.0 since it's much simpler than 1.0, but this is something we have yet to really nail down.
If token-based authorization is a requirement for anybody on this list, please let us know so we have a sense of the demand. We don't like basic auth much either but it was easiest to support off-the-bat.