Switch from OIDC UserInfo to OAuth 2.0 Token Introspection #1
Loading…
x
Reference in New Issue
Block a user
No description provided.
Delete Branch "token-introspection"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
The UserInfo endpoint is for fetching the users profile (name, email, phone number, picture, and so on). Token introspection is for inspecting the access token and determining the authorities the user has (subject (principal), entitlements, and scopes granted).