can we use bearer-only with authorization ? if it can be , how can we use ? are there any example ? when i try to use with photoz example , i get bad request (or 403 i am not sure , i change a lot of thing) Because i don't want redirect or store session , it can be used by mobil apps . Thank you for helping