Document API authentication in OpenAPI 3.1: Bearer, API keys, OAuth 2, and mTLS without the usual mistakes
Authentication is the part of an API contract that consumers hit first and that documentation most often gets quietly wrong. A security scheme that is defined but never referenced, a bearer token mode
blogs.powerduck.com6 min read