Getting Started
Deployment
OAuth and OpenID Connect
Operations
Financial-grade API
Authlete Home
Documents
API Reference
Console Login
Free Trial
English
English
日本語
Authlete Home
Documents
API Reference
Console Login
Free Trial
Authlete Knowledge Base
OAuth and OpenID Connect
Tokens
Tokens
Access Tokens
Refresh Tokens
ID Tokens
Proof-of-Possession (PoP) Tokens
Grant Type
Scopes
PKCE (RFC 7636)
Client Management
Authorization Requests
User Authentication
Error Handling
Client Authentication
Introspection
Userinfo Endpoint
JARM
Device Flow (RFC 8628)
Tokens
Managing authorizations (issued tokens) granted for a client by a user
Updating issued token(s)
How Authlete determines token duration
Token duration per scope
Token duration per client
Changing token duration
Authlete's policy on sweeping unused tokens
Token revocation policy