Microsoft Applications APIs · OAuth Scopes
Microsoft Applications APIs OAuth Scopes
OAuth 2.0
derived
Microsoft Applications APIs publishes 5 OAuth 2.0 scopes via the authorizationCode and clientCredentials flows. Scopes are the fine-grained permissions an application requests at authorization time to act against the Microsoft Applications APIs API on a user’s behalf.
Tokens are issued from https://login.microsoftonline.com/common/oauth2/v2.0/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CloudEnterpriseMicrosoftMicrosoft-365OfficeProductivitySoftware-as-a-Service
Scopes: 5
Flows: authorizationCode, clientCredentials
Method: derived
OAuth endpoints
Authorization URL
https://login.microsoftonline.com/common/oauth2/v2.0/authorize
https://login.microsoftonline.com/common/oauth2/v2.0/authorize
Token URL
https://login.microsoftonline.com/common/oauth2/v2.0/token
https://login.microsoftonline.com/common/oauth2/v2.0/token
Flows
authorizationCodeclientCredentials
authorizationCodeclientCredentials
Scopes (5)
| Scope | Description | Flows |
|---|---|---|
| Calendars.Read | Read user calendars | authorizationCode |
| Files.Read | Read user files | authorizationCode |
| Mail.Read | Read user mail | authorizationCode |
| User.Read | Sign in and read user profile | authorizationCode |
| https://graph.microsoft.com/.default | Application permissions | clientCredentials |
Source
OAuth Scopes
Work with this as data
Every scope set here is available over the APIs.io API and to AI agents over MCP.