This is a screenshot. I have tried it and found that some parts work while others don't.
After logging in on the login page, if the '/connect/token' call is not made, the tenant ID cannot be obtained.
Yes Manually copy the token and then log out. You can still call the API using the token.
Is there a way to prevent the access of the logout token without using a persistent database?