Right. I hope the example can be extended to include a sample api service - as understanding how to verify the jwt, check blacklisted tokens are essential to actually using this.
I'm worried junior devs might look at such examples and believe it is real code.