Ideally in Node, PHP, and Python…
I’m assuming you are wanting to do validation all server-side. I would recommend using the token introspection endpoint (https://developer.okta.com/docs/api/resources/oauth2.html#introspection-request). It will help validate the token and tell if it has been revoked.
For libraries (local validation, without a roundtrip to the introspection endpoint):