Flint · OAuth Scopes

Flint OAuth Scopes

OAuth 2.0 searched

Flint publishes 7 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Flint API on a user’s behalf.

Tokens are issued from https://clerk.tryflint.com/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanyAIMarketingLanding PagesAgentsMCPWebAdvertising
Scopes: 7 Flows: authorizationCode Method: searched

OAuth endpoints

Authorization URL
https://clerk.tryflint.com/oauth/authorize
Token URL
https://clerk.tryflint.com/oauth/token
Flows
authorizationCode

Scopes (7)

ScopeDescriptionFlows
openid OpenID Connect authentication; issue an ID token.
offline_access Issue a refresh token for long-lived access.
profile Access the user's basic profile claims.
email Access the user's email address.
public_metadata Read the user's public metadata.
private_metadata Read the user's private metadata.
user:org:read Read the user's organization membership.

Source

OAuth Scopes

Raw ↑
generated: '2026-07-19'
method: searched
source: https://mcp.tryflint.com/.well-known/oauth-protected-resource
docs: https://clerk.tryflint.com/.well-known/oauth-authorization-server
note: >-
  OAuth applies to Flint's hosted MCP server only (the REST Agent Tasks API uses
  a bearer API key with no scope surface). The MCP protected-resource metadata
  advertises openid + offline_access; the Clerk authorization server exposes the
  full standard Clerk OIDC scope set below.
schemes:
  - name: mcpOAuth
    source: https://mcp.tryflint.com
    flows:
      - flow: authorizationCode
        authorizationUrl: https://clerk.tryflint.com/oauth/authorize
        tokenUrl: https://clerk.tryflint.com/oauth/token
scopes:
  - scope: openid
    description: OpenID Connect authentication; issue an ID token.
    advertised_by_resource: true
  - scope: offline_access
    description: Issue a refresh token for long-lived access.
    advertised_by_resource: true
  - scope: profile
    description: Access the user's basic profile claims.
  - scope: email
    description: Access the user's email address.
  - scope: public_metadata
    description: Read the user's public metadata.
  - scope: private_metadata
    description: Read the user's private metadata.
  - scope: "user:org:read"
    description: Read the user's organization membership.