OAuth 2.0 client_credentials grant via Keycloak service account.
Clients are provisioned per IntegrationOrganization in the
nt24-idp realm.
OK
Event type or segment wildcard (compliance.*, kyc.*,
self_service_invitation.*). Root * is not supported.
ACTIVE, PAUSED, DISABLED Signing secret — returned only on the create response. Not included on GET / list.