Introspection endpoint for Opaque tokens or more flexible rules to get clear JWT access token

And us, we’re using Mulesoft with Auth0 and cannot properly implement rate limiting and more because of the lack of an introspection endpoint.