That said, if you have spotted a place in the code where you believe there is such a vulnerability, please do report it. Disclosure guidelines are at: https://github.com/cloudflare/workers-oauth-provider/blob/ma...
Filtering it down by the hash prefix locally is much leas likly to be detected then spamming the servers.