This figure shows client credential flow (recommended) to secure TMF and Fallout
APIs. In this flow:
- Applications authenticate as themselves (not on behalf of a user).
Hence, API callers authenticate directly without user involvement.
- They programmatically and securely obtain the OIDC access token to an API.