Why without Consent AzureAD Application Refresh Token gets delivered

Trying to get an access_token and refresh_token in. For this I am doing an oauth2 call with help of https://login.microsoftonline.com/{{ Tenant-ID }}/oauth2/v2.0/authorize?…… and where the response_type is code. With help of the CODE the next request will be the TOKEN call https://login.microsoftonline.com/{{ Tenant-ID }}/oauth2/v2.0/token with the scope: –data-urlencode ‘scope=https://graph.microsoft.com/user.read offline_access’   Now when I…

Learn More

You may be interested in

What you're searching for?

Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors