IESO · OAuth Scopes
IESO OAuth Scopes
OAuth 2.0
searched
IESO publishes 7 OAuth 2.0 scopes via the authorizationCode, implicit, password, deviceCode, and refreshToken flows. Scopes are the fine-grained permissions an application requests at authorization time to act against the IESO API on a user’s behalf.
Tokens are issued from https://gateway.ieso.ca/oauth2/v1/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
EnergyCanadaElectricityEnergy MarketsGridSystem OperatorMarket DataOpen DataOntarioDemand ResponseRenewables
Scopes: 7
Flows: authorizationCode, implicit, password, deviceCode, refreshToken
Method: searched
OAuth endpoints
Authorization URL
https://gateway.ieso.ca/oauth2/v1/authorize
https://gateway.ieso.ca/oauth2/v1/authorize
Token URL
https://gateway.ieso.ca/oauth2/v1/token
https://gateway.ieso.ca/oauth2/v1/token
Flows
authorizationCodeimplicitpassworddeviceCoderefreshToken
authorizationCodeimplicitpassworddeviceCoderefreshToken
Scopes (7)
| Scope | Description | Flows |
|---|---|---|
| openid | Required OpenID Connect scope; requests an ID token for the authenticated participant user. | |
| profile | Standard OIDC profile claims (name, preferred_username, locale, updated_at). | |
| Standard OIDC email and email_verified claims. | ||
| address | Standard OIDC postal address claim. | |
| phone | Standard OIDC phone_number and phone_number_verified claims. | |
| offline_access | Requests a refresh token so the session can be renewed without re-authentication. | |
| groups | Okta group membership claim. In an IESO deployment this is the closest thing to an authorization signal, since participant entitlements are administered as group/role membership by the organization's Rights Administrator rather than as API scopes. |
📄 Provider scope reference: https://www.ieso.ca/sector-participants/technical-interfaces