Microsoft Office · OAuth Scopes
Microsoft Office OAuth Scopes
OAuth 2.0
searched
Microsoft Office publishes 16 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Microsoft Office API on a user’s behalf.
Tokens are issued from https://login.microsoftonline.com/common/oauth2/v2.0/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CollaborationDocumentsMicrosoftOfficeProductivity
Scopes: 16
Flows: authorizationCode
Method: searched
OAuth endpoints
Authorization URL
https://login.microsoftonline.com/common/oauth2/v2.0/authorize
https://login.microsoftonline.com/common/oauth2/v2.0/authorize
Token URL
https://login.microsoftonline.com/common/oauth2/v2.0/token
https://login.microsoftonline.com/common/oauth2/v2.0/token
Flows
authorizationCode
authorizationCode
Scopes (16)
| Scope | Description | Flows |
|---|---|---|
| ChannelMessage.Send | Send channel messages | authorizationCode |
| Files.Read | Read user files | authorizationCode |
| Files.ReadWrite | Read and write user files | authorizationCode |
| Mail.Read | Read user mail | authorizationCode |
| Mail.Send | Send mail as user | authorizationCode |
| Team.ReadBasic.All | Read basic team info | authorizationCode |
| User.Read | Sign in and read user profile | authorizationCode |
| Mail.ReadWrite | Read and write access to user mail | authorizationCode |
| Calendars.ReadWrite | Read and write user calendars | authorizationCode |
| Contacts.Read | Read user contacts | authorizationCode |
| Files.ReadWrite.All | Read and write all files the user can access | authorizationCode |
| Sites.Read.All | Read items in all SharePoint site collections | authorizationCode |
| Chat.Read | Read the user's Teams chat messages | authorizationCode |
| ChannelMessage.Read.All | Read user's Teams channel messages | authorizationCode |
| offline_access | Maintain access to data via refresh tokens | authorizationCode |
| openid | Sign the user in with OpenID Connect | authorizationCode |
📄 Provider scope reference: https://learn.microsoft.com/en-us/graph/permissions-reference