bearerMethodsSupported
Methods supported for presenting Bearer tokens: header, body, query.
When null, auto-derived as header when at least one provider with bearer { } uses the default Authorization: Bearer header extractor. Custom token extractors cannot be inferred; set this value explicitly when a custom extractor reads tokens from another RFC 6750 location.