oAuth = Authorization between services only giving other service with limited credential. once user permit different service to access google OAuth gives a token with limited access authorites written. token is JWT Terminology Resource Server has burden of security. flow 1 1. log to photo printing service and say "my picture is in google drive can you access there and fetch my picture and print ..