Joor · OAuth Scopes
Joor OAuth Scopes
OAuth 2.0
searched
Joor publishes 9 OAuth 2.0 scopes via the authorizationCode and clientCredentials flows. Scopes are the fine-grained permissions an application requests at authorization time to act against the Joor API on a user’s behalf.
Tokens are issued from https://auth.jooraccess.com/auth/realms/joor/protocol/openid-connect/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CompanyFashionWholesaleRetaileCommerceB2BMarketplacePayments
Scopes: 9
Flows: authorizationCode, clientCredentials
Method: searched
OAuth endpoints
Authorization URL
https://auth.jooraccess.com/auth/realms/joor/protocol/openid-connect/auth
https://auth.jooraccess.com/auth/realms/joor/protocol/openid-connect/auth
Token URL
https://auth.jooraccess.com/auth/realms/joor/protocol/openid-connect/token
https://auth.jooraccess.com/auth/realms/joor/protocol/openid-connect/token
Flows
authorizationCodeclientCredentials
authorizationCodeclientCredentials
Scopes (9)
| Scope | Description | Flows |
|---|---|---|
| openid | OpenID Connect authentication; issue an ID token. | |
| profile | Access to basic profile claims (name, preferred_username, etc.). | |
| Access to the user's email address claim. | ||
| address | Access to the user's address claim. | |
| phone | Access to the user's phone number claim. | |
| roles | Realm and client role claims for the authenticated principal. | |
| offline_access | Issue a refresh token for offline / long-lived access. | |
| web-origins | CORS web-origin allow-list claim for browser clients. | |
| microprofile-jwt | MicroProfile JWT claims (groups, upn) for service authorization. |
📄 Provider scope reference: https://auth.jooraccess.com/auth/realms/joor/.well-known/openid-configuration