set('me', $data['me']) ->set('client_id', $data['client_id']) ->set('scope', $data['scope']) ->set('date_issued', time()) ->set('nonce', bin2hex(random_bytes(8))) ->sign($signer, config('app.key')) ->getToken(); return $token; } /** * Check the token signature is valid. * * @param string The token * @return mixed */ public function validateToken($token) { $signer = new Sha256(); try { $token = (new Parser())->parse((string) $token); } catch (InvalidArgumentException | RuntimeException $e) { return; } if ($token->verify($signer, config('app.key'))) { //signuture valid return $token; } } }