Management of token security is done by an OAuth2 authorization/token server.
The default implementation use cynagora to enable services to check permissions of their clients.
That is why the proposed name is cynagoauth. Its right location in agl repositories seems to be src.
|23356,5||af-main: OAuth client credentials and localuser names||master||AGL/meta-agl||Status: MERGED||+2||+1|