logoalt Hacker News

anon84873628today at 2:10 PM0 repliesview on HN

It comes down to whether the OAuth token generated by their client is used only in their client.

If you register a new OAuth client and generate access tokens for it to call the API, then you are following the rules.