AG1 · OAuth Scopes

AG1 OAuth Scopes

OAuth 2.0 probed

AG1 publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the AG1 API on a user’s behalf.

Tokens are issued from https://account.drinkag1.com/authentication/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanyConsumerHealthNutritionSupplementsDirect to ConsumerEcommerceSubscriptionWellnessAgentic CommerceMCPUCPShopifyGraphQL
Scopes: 4 Flows: authorizationCode Method: probed

OAuth endpoints

Authorization URL
https://account.drinkag1.com/authentication/oauth/authorize
Token URL
https://account.drinkag1.com/authentication/oauth/token
Flows
authorizationCode

Scopes (4)

ScopeDescriptionFlows
openid OpenID Connect - issue an ID token identifying the AG1 customer. authorizationCode
email Release the customer's email address and email_verified claim. authorizationCode
customer-account-api:full Full access to the Shopify Customer Account API for the authenticated AG1 customer - orders, subscriptions, addresses, payment methods, store credit. authorizationCode
customer-account-mcp-api:full Full access to the Customer Account MCP server at https://account.drinkag1.com/customer/api/mcp - order status, store credit balances and return requests on the authenticated customer's behalf. authorizationCode

Source

OAuth Scopes

athletic-greens-scopes.yml Raw ↑
generated: '2026-08-02'
method: probed
source: https://shop.drinkag1.com/.well-known/oauth-authorization-server
note: Scopes are read verbatim from the live RFC 8414 authorization-server metadata
  served on AG1's hosts. AG1 publishes no scope reference page; descriptions below
  state the scope's effect as observed on the protected surfaces, and are marked
  derived where the metadata carries no description.
schemes:
- name: shopify-customer-accounts-oidc
  source: well-known/athletic-greens-oauth-authorization-server.json
  issuer: https://shopify.com/authentication/15234600
  flows:
  - flow: authorizationCode
    authorizationUrl: https://account.drinkag1.com/authentication/oauth/authorize
    tokenUrl: https://account.drinkag1.com/authentication/oauth/token
    pkce: S256
scopes:
- scope: openid
  description: OpenID Connect - issue an ID token identifying the AG1 customer.
  description_method: derived
  flows: [authorizationCode]
  sources: [well-known/athletic-greens-oauth-authorization-server.json]
- scope: email
  description: Release the customer's email address and email_verified claim.
  description_method: derived
  flows: [authorizationCode]
  sources: [well-known/athletic-greens-oauth-authorization-server.json]
- scope: customer-account-api:full
  description: Full access to the Shopify Customer Account API for the authenticated
    AG1 customer - orders, subscriptions, addresses, payment methods, store credit.
  description_method: derived
  flows: [authorizationCode]
  sources: [well-known/athletic-greens-oauth-authorization-server.json]
- scope: customer-account-mcp-api:full
  description: Full access to the Customer Account MCP server at
    https://account.drinkag1.com/customer/api/mcp - order status, store credit balances
    and return requests on the authenticated customer's behalf.
  description_method: derived
  flows: [authorizationCode]
  sources: [well-known/athletic-greens-oauth-authorization-server.json]