Fusio provides a default consumer implementation located at
provides a basic admin panel to manage and authorize apps. It is also possible
to integrate it into an existing application. In the following an explanation
how to authorize an app.
redirects the user to the consumer endpoint i.e.:
If the user has authenticated and approved the app the user gets redirected to
redirect_uri. The callback contains the access token in the fragment
component. The access tokens which are issued through the implicit grant have
usually a much shorter life time because they are more insecure. It is also
possible to deactivate the implicit grant through the configuration.
A user can use the password grant to obtain directly an access token with
their username and password. Therefor he has to send a direct request to the