I\'m building a service that is using Sonos and Spotify\'s APIs and to do so, I use OAuth 2.0. I think I understand the OAuth 2.0 flow quite well with one exception: how do