validateAccessToken

open suspend fun validateAccessToken(authorizationHeader: String, httpRequest: RequestInfo?, validatedClientKey: JsonWebKey?): KmmResult<ValidatedAccessToken>(source)

Validates the access token from authorizationHeader and returns what it authorizes. Implementations that issued the token themselves also fill ValidatedAccessToken.userInfoExtended, so callers do not need a second lookup with readUserInfo.