Planet · OAuth Scopes

Planet OAuth Scopes

OAuth 2.0 searched

Planet publishes 5 OAuth 2.0 scopes via the authorizationCode and clientCredentials flows. Scopes are the fine-grained permissions an application requests at authorization time to act against the Planet API on a user’s behalf.

Tokens are issued from https://login.planet.com/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

Satellite ImageryEarth ObservationGeospatialRemote SensingMappingAnalyticsLocationDataGISCompany
Scopes: 5 Flows: authorizationCode, clientCredentials Method: searched

OAuth endpoints

Authorization URL
https://login.planet.com/authorize
Token URL
https://login.planet.com/oauth/token
Flows
authorizationCodeclientCredentials

Scopes (5)

ScopeDescriptionFlows
planet Access to all Planet APIs (the primary API-access scope). authorizationCode, clientCredentials
offline_access Issue a refresh token so a user session can be renewed without re-login. authorizationCode
openid OpenID Connect - authenticate the user and return an ID token. authorizationCode
profile Access the user's basic profile claims (name, nickname, picture, etc.). authorizationCode
email Access the user's email address and verification status. authorizationCode

Source

OAuth Scopes

planet-scopes.yml Raw ↑
generated: '2026-07-20'
method: searched
source: https://login.planet.com/.well-known/openid-configuration
docs: https://docs.planet.com/develop/authentication/
schemes:
- name: PlanetOAuth2
  source: https://docs.planet.com/develop/authentication/
  flows:
  - flow: authorizationCode
    authorizationUrl: https://login.planet.com/authorize
    tokenUrl: https://login.planet.com/oauth/token
  - flow: clientCredentials
    tokenUrl: https://login.planet.com/oauth/token
scopes:
- scope: planet
  description: Access to all Planet APIs (the primary API-access scope).
  flows: [authorizationCode, clientCredentials]
- scope: offline_access
  description: Issue a refresh token so a user session can be renewed without re-login.
  flows: [authorizationCode]
- scope: openid
  description: OpenID Connect - authenticate the user and return an ID token.
  flows: [authorizationCode]
- scope: profile
  description: Access the user's basic profile claims (name, nickname, picture, etc.).
  flows: [authorizationCode]
- scope: email
  description: Access the user's email address and verification status.
  flows: [authorizationCode]
notes: >-
  Scopes above marked as OIDC identity scopes (openid/profile/email/offline_access)
  are advertised in the login.planet.com discovery document; `planet` is the
  documented scope that grants access to the Planet APIs. The authorization server
  additionally advertises fine-grained OIDC claim scopes (name, given_name,
  family_name, nickname, phone, address, picture, created_at, identities).