It's like basic auth but use tokens in the Authorization headers instead
of base64(user:pass). It's a bit more secure... JWT token may also contains
some extra data (user infos, api scope, etc.) but those are encrypted using
public/private keys. I don't know much about bearer.