Hi,
Per the
blog post here and the email sent out to clientId's that had used the method in the past, we understand the OOB flow is being deprecated and will be moving our token process away from that prior to the warning and deadline dates..
However, the messaging is unclear as to if only the retrieval of new tokens using the OOB method will be blocked, or if existing tokens obtained via that method will be invalidated as well.
That is, if a user has already granted our desktop clientId access and our application stored the offline refreshToken - will that token continue to work past 10/3/22, or will a new token using an
alternative flow need to be obtained prior to then to retain access?
Thank you in advance for any clarification you can provide.