Centers for Medicare and Medicaid Services · OAuth Scopes
Centers for Medicare and Medicaid Services OAuth Scopes
OAuth 2.0
searched
Centers for Medicare and Medicaid Services publishes 6 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Centers for Medicare and Medicaid Services API on a user’s behalf.
Tokens are issued from https://api.bluebutton.cms.gov/v2/o/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
MedicareMedicaidHealthcareHealth InsuranceFHIRFederal-GovernmentDrug SpendingProvider DataQuality MeasuresClaims Data
Scopes: 6
Flows: authorizationCode
Method: searched
OAuth endpoints
Authorization URL
https://api.bluebutton.cms.gov/v2/o/authorize
https://api.bluebutton.cms.gov/v2/o/authorize
Token URL
https://api.bluebutton.cms.gov/v2/o/token
https://api.bluebutton.cms.gov/v2/o/token
Flows
authorizationCode
authorizationCode
Scopes (6)
| Scope | Description | Flows |
|---|---|---|
| patient/Patient.rs | Read and search my general patient and demographic information. | authorizationCode |
| patient/Coverage.rs | Read and search my Medicare and supplemental coverage information. | authorizationCode |
| patient/ExplanationOfBenefit.rs | Read and search my Medicare claim information. | authorizationCode |
| launch/patient | Patient launch context (SMART App Launch). | authorizationCode |
| openid | Retrieve information about the currently logged-in user (OpenID Connect). | authorizationCode |
| profile | Access the /UserInfo endpoint (OpenID Connect). | authorizationCode |
📄 Provider scope reference: https://bluebutton.cms.gov/api-documentation/authorization/