Skip to main content
Version: Next

Rotate a refresh grant

POST 

/api/token

Authenticate with a consumer DID-signed bearer proof. Its iss and sub identify the consumer, aud identifies the provider, and token contains the current access JWT. The proof requires iat and exp and may live at most 300 seconds.

Request

Responses