Chariot · OAuth Scopes

Chariot OAuth Scopes

OAuth 2.0 searched

Chariot publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Chariot API on a user’s behalf.

Tokens are issued from https://api.givechariot.com/auth/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

PaymentsDonor Advised FundsCharitable GivingNonprofitFintechDAFpayGrantsDisbursementsOpen BankingFDXWebhooksCompany
Scopes: 4 Flows: authorizationCode Method: searched

OAuth endpoints

Authorization URL
https://dashboard.givechariot.com/oauth/authorize
Token URL
https://api.givechariot.com/auth/oauth/token
Flows
authorizationCode

Scopes (4)

ScopeDescriptionFlows
read:bank_accounts Read access to bank account data authorizationCode
sync:connected_accounts Sync access to connected account data authorizationCode
openid OpenID Connect authentication (present in OIDC discovery scopes_supported).
offline_access Request a refresh token for long-lived access (present in OIDC discovery scopes_supported).

Source

OAuth Scopes

Raw ↑
generated: '2026-07-18'
method: searched
source: openapi/chariot-fdx-openapi-original.yml, well-known/chariot-openid-configuration.json
docs: https://docs.givechariot.com/api/authentication
schemes:
- name: oauth2
  source: openapi/chariot-fdx-openapi-original.yml
  flows:
  - flow: authorizationCode
    authorizationUrl: https://dashboard.givechariot.com/oauth/authorize
    tokenUrl: https://api.givechariot.com/auth/oauth/token
  description: OAuth 2.0 Bearer token. A client may hold both scopes, but each FDX authorization
    must contain exactly one — they are mutually exclusive per authorization. An authorization
    containing both will be rejected. See the Authentication page for token exchange details.
scopes:
- scope: read:bank_accounts
  description: Read access to bank account data
  flows:
  - authorizationCode
  sources:
  - openapi/chariot-fdx-openapi-original.yml
- scope: sync:connected_accounts
  description: Sync access to connected account data
  flows:
  - authorizationCode
  sources:
  - openapi/chariot-fdx-openapi-original.yml
- scope: openid
  description: OpenID Connect authentication (present in OIDC discovery scopes_supported).
  sources:
  - well-known/chariot-openid-configuration.json
- scope: offline_access
  description: Request a refresh token for long-lived access (present in OIDC discovery scopes_supported).
  sources:
  - well-known/chariot-openid-configuration.json
note: >-
  The two FDX scopes are mutually exclusive per authorization. OIDC discovery
  (/.well-known/openid-configuration) additionally advertises openid and offline_access, and grant
  types authorization_code, refresh_token, client_credentials, and token-exchange.