syntaqxA person's access token can be let use the website as them: identity keeps the choice (migration 0043, off for every token until its owner turns it on), only on a person's own token, never a workspace's, a job's, an agent's or an application's, and says so on the token when it is used, while full access, presets and OAuth never include it; the person's name and avatar come with a token as with a session, and the audit log records which token a person used on any surface.526cea5History
- invites
- access.rs
- account_deletion.rs
- admin.rs
- aliases.rs
- avatars.rs
- crypto.rs
- deletion.rs
- deploy_keys.rs
- device.rs
- directory.rs
- email.rs
- emails.rs
- github.rs
- invites.rs
- job_tokens.rs
- lib.rs
- members.rs
- oauth.rs
- paid.rs
- profiles.rs
- rename.rs
- run_credentials.rs
- security.rs
- shared_invites.rs
- teams.rs
- throttle.rs
- token_reach.rs
- tokens.rs
- two_factor.rs
- workspaces.rs