Public-client (CIMD) providers need no operator credentials: derive their client_id from the deployment base URL and their state-signing key from the active OAuth2 server signing key, registering them at startup unless the operator configured them explicitly. Signed-off-by: Aurélien Sibiril <81782+aureliensibiril@users.noreply.github.com>