no idea about JWT…
here is what I found, hope you can help to solve the issue:


to figure out what’s the different, I compare the URLs of Live and Dev. and found this:
why the gmail.readonly , userinfo.email , userinfo.profile and openid arein different location?
is this the cause of the issue?
appreciate the help!