accept and verify github api access tokens, inject user into spring security context, get UserID to use in queries.