Where you see it
- Your server, on any SDK API endpoint, with the first title.
- Your app’s result, rarely: when the hosted flow reloads and its link session’s own credential is no longer valid, it ends and reports this code in
LinkResult.error.code. The second title belongs to the hosted flow’s own calls.
What it means
TheAuthorization header is missing, isn’t a Bearer token, or the token is unknown, revoked or expired.
An integration’s token from the client credentials grant lasts one hour.
What to do
- Request a new token from
https://app.plugchoice.com/oauth/tokenwith your integration’s client ID and secret (grant_type=client_credentials), then retry. - Cache the token on your server and renew it before its
expires_inruns out, rather than requesting one per call. - Send it as
Authorization: Bearer <token>.