Grafana Loki · OAuth Scopes
Grafana Loki OAuth Scopes
OAuth 2.0
probed
Grafana Loki publishes 6 OAuth 2.0 scopes. Scopes are the fine-grained permissions an application requests at authorization time to act against the Grafana Loki API on a user’s behalf.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CompanyLogsLoggingLog AggregationObservabilityMonitoringOpen SourceLogQLOpenTelemetryTelemetryKubernetesCloud-Native
Scopes: 6
Flows:
Method: probed
Scopes (6)
| Scope | Description | Flows |
|---|---|---|
| grafana:read | Read Grafana resources through the hosted Grafana Cloud MCP server. | |
| grafana:query | Execute datasource queries through the hosted Grafana Cloud MCP server. This is the scope the Loki query tools (query_loki_logs, query_loki_stats, query_loki_patterns, list_loki_label_names, list_loki_label_values) run under. | |
| grafana:write | Write Grafana resources through the hosted Grafana Cloud MCP server. | |
| logs:read | Read/query logs for a tenant on Grafana Cloud Logs or Grafana Enterprise Logs. | |
| logs:write | Push logs for a tenant on Grafana Cloud Logs or Grafana Enterprise Logs. | |
| logs:delete | Required on the access policy behind the token used with the log deletion endpoints (POST/GET/DELETE /loki/api/v1/delete) for the tenant named in the Basic auth user field. |
📄 Provider scope reference: https://grafana.com/docs/grafana-cloud/ai-tools/mcp-servers/cloud-mcp/https://grafana.com/docs/loki/latest/reference/loki-http-api/
Source
OAuth Scopes
Work with this as data
Every scope set here is available over the APIs.io API and to AI agents over MCP.