When a request to `/oauth/revoke` is received, if `access_token` cookie is present in the `request` then it should also be removed from there.
When a request to
/oauth/revokeis received, ifaccess_tokencookie is present in therequestthen it should also be removed from there.