---
updatedAt: 2026-06-11T18:20:55.000Z
agentTools:
  projectIndex: https://developer.trulioo.com/llms.txt
---

# Client Credential Flow (2-legged OAuth)

Each application (workflow) is assigned a unique Client ID and Client Secret.

 A successful access token request returns a JSON object containing the bearer token and the number of seconds until the token expires. Access tokens are issued with a 60 minute lifespan. You can request a new token once your current token expires.

# OpenAPI definition

```json
{
  "openapi": "3.0.1",
  "info": {
    "title": "Export API (Workflow)",
    "description": "# Introduction\n\n The export API can be used to receive real time data through the event webhook and to collect data submitted in a batch or query manner. We may support query DSL in the future. \n\n",
    "contact": {
      "name": "Workflow Export",
      "email": "support@trulioo.com"
    },
    "version": "2.1.0"
  },
  "servers": [
    {
      "url": "https://api.trulioo.com/wfs/export/"
    }
  ],
  "tags": [
    {
      "name": "Authorization",
      "description": "Client Credential Flow (2-legged OAuth)\n\nAuthenticated Workflow API: <a href='https://developer.trulioo.com/docs/authenticated-workflow-api-copy' target='_blank'>https://developer.trulioo.com/docs/authenticated-workflow-api-copy</a>"
    }
  ],
  "paths": {
    "/v1/oauth/accessToken": {
      "post": {
        "tags": [
          "Authorization"
        ],
        "summary": "Client Credential Flow (2-legged OAuth)",
        "description": "Each application (workflow) is assigned a unique Client ID and Client Secret.\n\n A successful access token request returns a JSON object containing the bearer token and the number of seconds until the token expires. Access tokens are issued with a 60 minute lifespan. You can request a new token once your current token expires.",
        "operationId": "accessToken",
        "parameters": [
          {
            "name": "clientId",
            "in": "query",
            "required": true,
            "schema": {
              "type": "string"
            }
          },
          {
            "name": "clientSecret",
            "in": "query",
            "required": true,
            "schema": {
              "type": "string"
            }
          }
        ],
        "responses": {
          "200": {
            "description": "OK",
            "content": {
              "application/json": {
                "schema": {
                  "$ref": "#/components/schemas/CognitoTokenDTO"
                }
              }
            }
          }
        },
        "deprecated": true
      }
    }
  },
  "components": {
    "schemas": {
      "CognitoTokenDTO": {
        "type": "object",
        "properties": {
          "accessToken": {
            "type": "string"
          },
          "expires": {
            "type": "integer",
            "format": "int32"
          }
        }
      }
    }
  }
}
```