Skip to content

Conversation

@Ross65536
Copy link

Relevant to issue

Implement token introspection as per RFC-7662:

  • introspection works on either access token or refresh token
  • introspection only works for tokens from the provided client

Useful to allow third party services to check for token validity if the access token is not signed like a JWT

@krainboltgreene
Copy link

Hey this seems like a solid improvement, anyway I can help get this merged?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants