#discovery OIDC discovery
Public, cached 300s. S256 is the only PKCE method advertised; plain is never listed.
Request
curl https://idp.tessera.example/.well-known/openid-configurationResponse
{
"issuer": "https://idp.tessera.example",
"jwks_uri": "https://idp.tessera.example/jwks",
"authorization_endpoint": "https://idp.tessera.example/authorize",
"token_endpoint": "https://idp.tessera.example/token",
"id_token_signing_alg_values_supported": ["EdDSA", "RS256"],
"code_challenge_methods_supported": ["S256"],
"scopes_supported": ["openid", "profile", "email"]
}