Skip to main content
POST
JavaScript

Authorizations

Authorization
string
header
required

Bearer authentication header of the form Bearer <token>, where <token> is your auth token.

Body

application/json
name
string
required

The name of the OAuth client

Example:

"My OAuth client"

allowed_scopes
string[]
required

List of allowed OAuth scopes

Example:
client_type
enum<string>
required

OAuth client type

Available options:
public,
confidential
allowed_grant_types
enum<string>[]
required

List of allowed OAuth grant types

Available options:
client_credentials,
authorization_code,
refresh_token
require_pkce
boolean
default:false

Whether PKCE (Proof Key for Code Exchange) is required for this client

redirect_uris
string<uri>[]

List of redirect URIs (required for authorization_code flow)

logo_uri
string<uri>

URL of the client logo

policy_uri
string<uri>

URL of the client's privacy policy

tos_uri
string<uri>

URL of the client's terms of service

Response

OAuth client created successfully

data
object