Bearer authentication header of the form Bearer <token>, where <token> is your auth token.
Application/project identifier
URI to redirect after authorization
Must be "code"
code Space-separated list of scopes
CSRF protection token
PKCE code challenge (SHA256 hash of verifier)
PKCE challenge method (only S256 supported)
S256 Redirect to authorization page