This info should be available in the token, not from the /userinfo endpoint. Does that help?

We want to be able to logout all sessions regardless of location when the user password is reset for security reasons.



Can you explain what you are trying to do? Logout when a PW is reset?

