If credentials are exposed, rotate the client secret immediately and revoke any compromised tokens or access paths.
powered by xwms
If credentials are exposed, rotate the client secret immediately and revoke any compromised tokens or access paths.
An authorization code is a short-lived code that your backend exchanges for an access token.
An access token is a temporary credential used to call protected API endpoints on behalf of a user or client.
A refresh token allows your application to request a new access token without forcing the user to log in again.
Token lifetime depends on your configured security policy and client setup.
Yes. Tokens can be revoked through the dashboard or supported API revocation mechanisms.
Deleting a client invalidates associated credentials and tokens, so existing integrations stop working.
现场支持
您必须登录才能启动支持票证。
登录欢迎回来。开始申请票或留下您的问题。