BulletProof · OAuth Scopes
BulletProof OAuth Scopes
OAuth 2.0
probed
BulletProof publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the BulletProof API on a user’s behalf.
Tokens are issued from https://account.bulletproof.com/authentication/oauth/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CompanyConsumer Packaged GoodsFood and BeverageHealth and WellnessSupplementsEcommerceDirect to ConsumerRetailAgentic CommerceShopify
Scopes: 4
Flows: authorizationCode
Method: probed
OAuth endpoints
Authorization URL
https://account.bulletproof.com/authentication/oauth/authorize
https://account.bulletproof.com/authentication/oauth/authorize
Token URL
https://account.bulletproof.com/authentication/oauth/token
https://account.bulletproof.com/authentication/oauth/token
Flows
authorizationCode
authorizationCode
Scopes (4)
| Scope | Description | Flows |
|---|---|---|
| openid | Standard OpenID Connect scope; requests an ID token for the signed-in customer. | authorizationCode |
| Releases the customer's email address and email_verified claim. | authorizationCode | |
| customer-account-api:full | Full access to the customer account API for the signed-in customer — profile, addresses, orders and subscriptions. | authorizationCode |
| customer-account-mcp-api:full | Full access to the customer account MCP API — the agent-facing projection of the same customer account data. Notable as an explicitly agent-scoped grant. | authorizationCode |