MYOB identity team has been working on new MYOB ID Oauth 2.0 implementation. You might have noticed some changes, for example; the shorter access token. Also a new scope value "offline_access".
Shorter access code, access token and refresh token
- You will receive opaque string type token. You should treat it like secret; do not try to parse or decrypt.
Change in Response parameters
- For example:
- state is standard parameter defined in if you pass this parameter you will need to validate it in the authorize response, otherwise you can ignore it.
- openid scope is oidc standard scope -
- offline_access scope is oidc standard scope just to indicate that the refresh token can be issued
Hope this information was helpful. If you have any questions, log a ticket with the Customisation & Integration Team.
Article is closed for comments.