I had fun with this one: 7 Ways an OAuth Access Token is like a Hotel Key Card
developer.okta.com/blog/2019…
1
10
1
21
if your access tokens are just a reference to a record in a database (the hotel key is just a number, and the doors look up access info in a central server), then you can update the roles in the existing token.
Jun 6, 2019 · 7:13 PM UTC

