RFC 6750
The OAuth 2.0 Authorization Framework: Bearer Token Usage
Abstract
RFC 6750 describes how to use bearer tokens in HTTP requests to access OAuth 2.0 protected resources. It defines the Authorization header method, form-encoded body parameter, and URI query parameter approaches, along with error codes such as invalid_token and insufficient_scope.