Following the discussion on the May 6, 2025 call, the intro to the OIDC SL1 profile needs to be updated to clarify the intent of the profile is not to provide generic API access, only for federated login and access to the userinfo endpoint. This absolves IPSIE OIDC SL1 of the need for DPoP and refresh tokens as discussed in #69.