Allow rotating the OAuth client secret. When a new secret is generated, the previous secret should be invalidated.