PagoPA · OAuth Scopes
PagoPA OAuth Scopes
OAuth 2.0
derived
PagoPA publishes 6 OAuth 2.0 scopes via the clientCredentials flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the PagoPA API on a user’s behalf.
Tokens are issued from /token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
CompanyPaymentsGovernmentPublic SectorDigital IdentityInteroperabilityNotificationsItaly
Scopes: 6
Flows: clientCredentials
Method: derived
OAuth endpoints
Token URL
/token https://api-mcshared.cstar.pagopa.it/auth-itn/realms/merchant-operator/protocol/openid-connect/token https://api-mcshared.cstar.pagopa.it/auth-itn/realms/srtp/protocol/openid-connect/token
/token https://api-mcshared.cstar.pagopa.it/auth-itn/realms/merchant-operator/protocol/openid-connect/token https://api-mcshared.cstar.pagopa.it/auth-itn/realms/srtp/protocol/openid-connect/token
Flows
clientCredentials
clientCredentials
Scopes (6)
| Scope | Description | Flows |
|---|---|---|
| admin_rtp_activations | Grants full administrative access to all activations. | clientCredentials |
| read_rtp_activations | Read RTP activation belonging to the requesting subject. | clientCredentials |
| read_rtp_all | Read all RTP activations. | clientCredentials |
| read_rtp_payees | Grants permission to read the RTP Payees registry. | clientCredentials |
| read_rtp_service_providers | Grants permission to read the list of RTP service providers. | clientCredentials |
| write_rtp_activations | Grants permission to create, update, or delete activations. | clientCredentials |
Source
OAuth Scopes
Work with this as data
Every scope set here is available over the APIs.io API and to AI agents over MCP.