Concept2 Logbook
The athlete authorizes ErgCoach at Concept2. The API validates protected state and exchanges the code; the Web experience verifies browser correlation and cleans return values.
Conceptual access covers profile and read-results scopes. Client IDs, secrets, tokens, callback state and diagnostic values are never public content.