As i noted in my question:
"I have noticed that even if i do not have any permission at all on the 'API Permissions' of a selected registered application, it can still connect to resources by using the users scope consent."
Even after Removing all default permissions and not adding any new ones, my registered app is still able to access resources granted by the user's consent.
I understand the "Application permissions" are there to enable the application access to resources on its own, without any user interaction. But what is the point of the "Delegated permissions" if the users consent is the one that counts?
Thanks.