This document discusses security components and modules in MuleSoft's Anypoint platform. It describes Mule Secure Token Service, OAuth 2.0 authorization, and security for REST APIs. It recommends securing APIs with HTTPS and OAuth 2.0 and discusses using authentication, authorization, and security managers at different layers - experience, process, and system connectivity - to apply fine-grained security. Basic authentication over HTTPS and using OAuth 2.0 to issue tokens in exchange for credentials are also covered.