OAuth scope
A value in an OAuth request naming the range of access a client asks for; the server may grant all, part or none of it.
In OAuth 2.0, a scope is a value in an authorisation request that expresses the range of access a client asks for, and the authorisation server may grant all, part or none of it. Scopes are coarse by design, such as read access to accounts, and do not by themselves carry an amount, a payee or a time window. For agents that move money, scopes are usually combined with finer-grained authorisation details and short-lived tokens.
Agent Minute explains this term on 20 October 2026.
Related terms
Access tokenA credential a client presents to access protected resources, representing a specific, limited authorisation.OAuth 2.0The IETF framework that lets an application obtain limited access to a service on a user's behalf, without their password.Rich Authorization RequestsAn OAuth extension that carries structured details of the action being authorised, such as amount and payee.MandateA checkable statement of what an agent may do for a principal: which action, how much, with whom and until when.