@dansup Very cool. Does "Read-Only" account scope imply access to "DM"s?
@eloquence I'm not quite sure, but I'm working on revoking the token shortly after fetching the following accounts.
We only fetch `/verify_credentials` and `/following`
https://github.com/pixelfed/pixelfed/blob/8911ace1028dc0df3dae155d61291283d18c21de/app/Services/Account/RemoteAuthService.php#L78-L106
@eloquence I'm not quite sure, but I'm working on revoking the token shortly after fetching the following accounts.
We only fetch `/verify_credentials` and `/following`
https://github.com/pixelfed/pixelfed/blob/8911ace1028dc0df3dae155d61291283d18c21de/app/Services/Account/RemoteAuthService.php#L78-L106