Either require a JWT refresh endpoint in the S5 HTTP spec or implement it when a server returns a 40x error?
Either require a JWT refresh endpoint in the S5 HTTP spec or implement it when a server returns a 40x error?