It is possible to for an OAuth 2.0 application to act on behalf of another user
curl https://api.box.com/2.0/folders/0 \ -H "As-User: [USER_ID]" -H "Authorization: Bearer [ACCESS_TOKEN]"
As-User header has a few requirements. Firstly, the application
needs to be configured to perform actions as users in the developer
Additionally, the authenticated user needs to be a user with admin permissions, meaning either an admin, co-admin, or service account. See our guide on User Types for more details.