Chilkat Online Tools

C / Commercetools / Token Introspection

Back to Collection Items

#include <C_CkHttp.h>
#include <C_CkHttpResponse.h>

void ChilkatSample(void)
    {
    HCkHttp http;
    BOOL success;
    HCkHttpResponse resp;

    // This example assumes the Chilkat API to have been previously unlocked.
    // See Global Unlock Sample for sample code.

    http = CkHttp_Create();

    CkHttp_putBasicAuth(http,TRUE);
    CkHttp_putLogin(http,"username");
    CkHttp_putPassword(http,"password");

    CkHttp_SetRequestHeader(http,"Content-Type","application/json");

    resp = CkHttp_QuickRequest(http,"POST","https://domain.com/oauth/introspect?token={{ctp_access_token}}");
    if (CkHttp_getLastMethodSuccess(http) == FALSE) {
        printf("%s\n",CkHttp_lastErrorText(http));
        CkHttp_Dispose(http);
        return;
    }

    printf("%d\n",CkHttpResponse_getStatusCode(resp));
    printf("%s\n",CkHttpResponse_bodyStr(resp));
    CkHttpResponse_Dispose(resp);


    CkHttp_Dispose(http);

    }

Curl Command

curl -X POST
	-u 'username:password'
	-H "Content-Type: application/json"
https://domain.com/oauth/introspect?token={{ctp_access_token}}

Postman Collection Item JSON

{
  "name": "Token Introspection",
  "event": [
    {
      "listen": "test",
      "script": {
        "type": "text/javascript",
        "exec": [
          "tests[\"Status code is 200\"] = responseCode.code === 200;"
        ]
      }
    }
  ],
  "request": {
    "auth": {
      "type": "basic",
      "basic": {
        "username": "{{client_id}}",
        "password": "{{client_secret}}"
      }
    },
    "method": "POST",
    "header": [
      {
        "key": "Content-Type",
        "value": "application/json"
      }
    ],
    "body": {
      "mode": "raw",
      "raw": ""
    },
    "url": {
      "raw": "{{auth_url}}/oauth/introspect?token={{ctp_access_token}}",
      "host": [
        "{{auth_url}}"
      ],
      "path": [
        "oauth",
        "introspect"
      ],
      "query": [
        {
          "key": "token",
          "value": "{{ctp_access_token}}",
          "equals": true
        }
      ]
    },
    "description": "Token introspection allows to determine the active state of an OAuth 2.0 access token and to determine meta-information about this accces token, such as the `scope`."
  },
  "response": [
  ]
}