Bancomat · OAuth Scopes

Bancomat OAuth Scopes

OAuth 2.0 searched

Bancomat publishes 55 OAuth 2.0 scopes via the authorizationCode and clientCredentials flows. Scopes are the fine-grained permissions an application requests at authorization time to act against the Bancomat API on a user’s behalf.

Tokens are issued from https://core.flowpay.it/api/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

ATMBankingFinancial ServicesItalyMobile PaymentsPaymentsDebit CardsOpen BankingPSD2Account InformationPayment InitiationInvoicingpagoPA
Scopes: 55 Flows: authorizationCode, clientCredentials Method: searched

OAuth endpoints

Authorization URL
https://core.flowpay.it/api/openid/authenticate /openid/authenticate
Token URL
https://core.flowpay.it/api/oauth/token /oauth/token
Flows
authorizationCodeclientCredentials

Scopes (55)

ScopeDescriptionFlows
account:read Operazioni di lettura sui conti authorizationCode, clientCredentials
account:write Operazione di modifica sui conti clientCredentials
accounts:read Allow to read accounts authorizationCode, clientCredentials
accounts:write Allow to mediate accounts creation and open banking consent renewal authorizationCode, clientCredentials
ade Allow to interact with Agenzia delle Entrate services clientCredentials
authorization_code
authorization_intent Creazione di intenti a consensi relativi a risorse di un utente clientCredentials
bill Gestione di ricevute clientCredentials
bill:write Creazione e gestione di ricevute authorizationCode
bills:read Allow to read bills authorizationCode, clientCredentials
bills:write Allow to create bills and manage lifecycle authorizationCode, clientCredentials
business:read Operazioni di lettura sulle informazioni della azienda authorizationCode, clientCredentials
checkout:read
construction:read
construction:write
constructions:read Allow to read information about construction sites authorizationCode, clientCredentials
constructions:write Allow to create construction sites and manage the lifecycle authorizationCode, clientCredentials
contacts:read Operazioni di lettura sulla rete aziendale authorizationCode
fees:read
invoice:read Operazioni di lettura sulle fatture authorizationCode, clientCredentials
invoice:write Operazioni di scrittura sulle fatture authorizationCode, clientCredentials
invoices:read Allow to read invoices authorizationCode, clientCredentials
invoices:write Allow to create invoices and manage lifecycle authorizationCode, clientCredentials
kyc
openid Allow to read user profile authorizationCode, clientCredentials
pagopa clientCredentials
pagopa:read Allow to retrieve users' PagoPA payment notices authorizationCode, clientCredentials
pagopa:write Allow to create PagoPA payment notices authorizationCode, clientCredentials
payment:read Operazioni di lettura sui pagamenti authorizationCode, clientCredentials
payments:read
salary:read Operazioni di lettura sulle buste paga authorizationCode, clientCredentials
salary:write Operazioni di scrittura sui salary authorizationCode, clientCredentials
statistic:read Lettura dei dati statistici raggruppati authorizationCode, clientCredentials
transactions:read
transfer:read Operazioni di lettura sui trasferimenti authorizationCode, clientCredentials
transfer:write Operazioni di scrittura sui trasferimenti authorizationCode, clientCredentials
transfers:read Allow to read transfers authorizationCode, clientCredentials
transfers:write Allow to create transfers and manage lifecycle authorizationCode, clientCredentials
wallet:`document_type` Allow to manage wallet for the specified use case authorizationCode, clientCredentials
wallet:construction
profile
email
disclaimer
vatCode
business
consumer
tenant_id
test_scope
factoring
wallet:transfer
wallet:pagopa
payment_method:sdd
payment_method:card
authentication_level:sca
track

Source

OAuth Scopes

Raw ↑
generated: '2026-09-17'
method: searched
docs: https://core.flowpay.it/api/openid/.well-known/openid-configuration
source: openapi/bancomat-flowpay-api-v1-openapi.yml, openapi/bancomat-flowpay-api-v2-openapi.yml; scopes_supported
  from https://core.flowpay.it/api/openid/.well-known/openid-configuration (200, 2026-09-17)
note: 'Two generations of scope vocabulary coexist: v1 uses singular names (account:read, invoice:write, salary:read,
  bill, pagopa, authorization_intent, reconciliation) and v2 uses plural names (accounts:read, invoices:write, pagopa:read/write,
  bills:write, ade, wallet:`document_type`). The live OpenID Provider metadata publishes 35 distinct scopes_supported,
  15 of which appear in neither contract (added below without descriptions). OpenID Connect scopes openid / profile
  / email are also supported for user identity.'
scope_count: 55
schemes:
- name: ThirdPartyAuthorizationCode
  source: openapi/bancomat-flowpay-api-v1-openapi.yml
  flows:
  - flow: authorizationCode
    authorizationUrl: https://core.flowpay.it/api/openid/authenticate
    tokenUrl: https://core.flowpay.it/api/oauth/token
  description: Autorizzazione oauth ottenuta da terze parti con un authorization flow
- name: ThirdPartyClientCredential
  source: openapi/bancomat-flowpay-api-v1-openapi.yml
  flows:
  - flow: clientCredentials
    tokenUrl: https://core.flowpay.it/api/oauth/token
  description: Autorizzazione oauth ottenuta da terze parti con client credential flow
- name: oAuth2
  source: openapi/bancomat-flowpay-api-v2-openapi.yml
  flows:
  - flow: authorizationCode
    authorizationUrl: /openid/authenticate
    tokenUrl: /oauth/token
  - flow: clientCredentials
    tokenUrl: /oauth/token
  description: OAuth2 flow
scopes:
- scope: account:read
  description: Operazioni di lettura sui conti
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: account:write
  description: Operazione di modifica sui conti
  flows:
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: accounts:read
  description: Allow to read accounts
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: accounts:write
  description: Allow to mediate accounts creation and open banking consent renewal
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: ade
  description: Allow to interact with Agenzia delle Entrate services
  flows:
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: authorization_code
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: authorization_intent
  description: Creazione di intenti a consensi relativi a risorse di un utente
  flows:
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: bill
  description: Gestione di ricevute
  flows:
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: bill:write
  description: Creazione e gestione di ricevute
  flows:
  - authorizationCode
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: bills:read
  description: Allow to read bills
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: bills:write
  description: Allow to create bills and manage lifecycle
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: business:read
  description: Operazioni di lettura sulle informazioni della azienda
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: checkout:read
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: construction:read
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: construction:write
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: constructions:read
  description: Allow to read information about construction sites
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: constructions:write
  description: Allow to create construction sites and manage the lifecycle
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: contacts:read
  description: Operazioni di lettura sulla rete aziendale
  flows:
  - authorizationCode
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: fees:read
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: invoice:read
  description: Operazioni di lettura sulle fatture
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: invoice:write
  description: Operazioni di scrittura sulle fatture
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: invoices:read
  description: Allow to read invoices
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: invoices:write
  description: Allow to create invoices and manage lifecycle
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: kyc
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: openid
  description: Allow to read user profile
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: pagopa
  flows:
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
- scope: pagopa:read
  description: Allow to retrieve users' PagoPA payment notices
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: pagopa:write
  description: Allow to create PagoPA payment notices
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: payment:read
  description: Operazioni di lettura sui pagamenti
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: payments:read
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: salary:read
  description: Operazioni di lettura sulle buste paga
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: salary:write
  description: Operazioni di scrittura sui salary
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: statistic:read
  description: Lettura dei dati statistici raggruppati
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: transactions:read
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: transfer:read
  description: Operazioni di lettura sui trasferimenti
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: transfer:write
  description: Operazioni di scrittura sui trasferimenti
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: transfers:read
  description: Allow to read transfers
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: transfers:write
  description: Allow to create transfers and manage lifecycle
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v1-openapi.yml
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: wallet:`document_type`
  description: Allow to manage wallet for the specified use case
  flows:
  - authorizationCode
  - clientCredentials
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
- scope: wallet:construction
  sources:
  - openapi/bancomat-flowpay-api-v2-openapi.yml
  - well-known/bancomat-flowpay-openid-configuration.json
- scope: profile
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: email
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: disclaimer
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: vatCode
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: business
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: consumer
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: tenant_id
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: test_scope
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: factoring
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: wallet:transfer
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: wallet:pagopa
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: payment_method:sdd
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: payment_method:card
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: authentication_level:sca
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description
- scope: track
  description: null
  flows: []
  sources:
  - well-known/bancomat-flowpay-openid-configuration.json
  note: listed in scopes_supported of the live OpenID Provider metadata but declared in neither OpenAPI; no published
    description

Work with this as data

Every scope set here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for oauth scopes

4 MCP tools reach this
  • find_scopesBrowse and filter every scope set in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This scope set
curl "https://apis.io/api/v1/scopes/bancomat-scopes"
All oauth scopes
curl "https://apis.io/api/v1/scopes?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.