OIDC UserInfo. Returns the authenticated subject (user DID) and granted scopes for the bearer token. Use this to verify a CIBA approval token and identify which user approved the action.
EdDSA-signed JWT obtained via OAuth 2.1 client_credentials or CIBA