Query parameters
Successful authorization
Biqli redirects to the registered callback URL:state before using the code. The code expires after five minutes, is
bound to the client, callback URL, user, workspace, scopes, and optional PKCE
challenge, and can be exchanged only once.
Denied authorization
When the user declines, Biqli redirects with:
Do not exchange a code unless the returned state matches the value stored for
the initiating browser session.

