In reply to https://jan.boddez.net/notes/fc3a78a3b3. One gives me a …

In reply to https://jan.boddez.net/notes/fc3a78a3b3.

One gives me a “bearer” token, the other a “basic auth” username and password. If sent over SSL, does it matter? Could, I guess, have a client look for an IndieAuth endpoint, then support for application passwords.