Could we use the standard scope attribute from JWT instead of the custom realm_access and resource_access? An example scope could be: { "scope": "realm-role,app-1/app-role-1,app-2/app-role-2" }