@high-optician-2097 -Thanks a lot for reverting back 🙏. So just as an workaround if we remove the grant_types like client_credentials, authorization_code hope that will block the client from getting an access token and auth code. Is that a suggested option to opt.