Skip to content

Scopes ​

Scopes grant specific capabilities to an OIDC access token or User Token. Request only the capabilities that an integration needs. A scope name does not imply general access to the corresponding resource.

Scope Reference ​

Capability

Identity

OIDCUser Token

Establish the user's OIDC identity and expose identity fields such as UID and zone.

Capability

Identity

OIDCUser Token

Establish the user's OIDC identity and expose identity fields such as UID and zone.

Request Rules ​

An OIDC authorization request must contain at least one of openid, user, or profile. Request only the additional scopes the integration needs; the registered client controls which scopes can be granted.

The User Token screen supports every scope shown as available for User Token above.

See Profile, Cloud Save, and Recent Scores and Rank for the endpoint-level requirements.