Relm · OAuth Scopes

Relm OAuth Scopes

OAuth 2.0 searched

Relm publishes 1 OAuth 2.0 scope via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Relm API on a user’s behalf.

Tokens are issued from https://api.relmcrm.com/oauth/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CRMSalesContactsDealsSales PipelineAutomationWebhookMCPA2AAI AgentsAgent-NativeUnited Arab Emirates
Scopes: 1 Flows: authorizationCode Method: searched

OAuth endpoints

Authorization URL
https://api.relmcrm.com/oauth/authorize
Token URL
https://api.relmcrm.com/oauth/token
Flows
authorizationCode

Scopes (1)

ScopeDescriptionFlows
crm Read and write the connected Relm workspace authorizationCode

Source

OAuth Scopes

Raw ↑
generated: '2026-09-19'
method: searched
source: openapi/relmcrm-com-openapi.yml (components.securitySchemes.oauth2) + well-known/relmcrm-com-oauth-authorization-server.json (RFC 8414, fetched live from https://api.relmcrm.com/.well-known/oauth-authorization-server) + well-known/relmcrm-com-oauth-protected-resource.json (RFC 9728) + https://relmcrm.com/docs (OAuth 2.1 section)
docs: https://relmcrm.com/docs
summary: >-
  One scope. Relm's OAuth 2.1 server issues a single coarse scope, crm, that grants read and write over the
  connected workspace; there is no read-only scope, no per-object scope and no admin/billing split. The scope
  set is the same in the OpenAPI, the RFC 8414 metadata (scopes_supported), the RFC 9728 protected-resource
  document (scopes_supported), the agent card, the MCP descriptor and every MCP tool's securitySchemes[]
  (oauth2, scopes [crm]). OAuth acts on live data only; test mode is API-key only.
schemes:
- name: oauth2
  source: openapi/relmcrm-com-openapi.yml
  version: OAuth 2.1 (authorization code + PKCE S256 + refresh-token rotation)
  issuer: https://api.relmcrm.com
  flows:
  - flow: authorizationCode
    authorizationUrl: https://api.relmcrm.com/oauth/authorize
    tokenUrl: https://api.relmcrm.com/oauth/token
    refreshUrl: https://api.relmcrm.com/oauth/token
  registration_endpoint: https://api.relmcrm.com/oauth/register
  revocation_endpoint: https://api.relmcrm.com/oauth/revoke
  grant_types_supported: [authorization_code, refresh_token]
  response_types_supported: [code]
  code_challenge_methods_supported: [S256]
  token_endpoint_auth_methods_supported: [none, client_secret_post, client_secret_basic]
  dynamic_client_registration: RFC 7591 — clients register themselves; the dashboard lists connected apps and disconnecting one revokes all of its access immediately (changelog v0.17.0)
  discovery:
    authorization_server: well-known/relmcrm-com-oauth-authorization-server.json
    protected_resource: well-known/relmcrm-com-oauth-protected-resource.json
    resource: https://api.relmcrm.com/mcp
  live_only: true
  description: 'OAuth 2.1 with PKCE (S256) and dynamic client registration (RFC 7591). Live mode only; test mode is API-key only. Discovery: /.well-known/oauth-authorization-server.'
scopes:
- scope: crm
  description: Read and write the connected Relm workspace
  access: read-write over contacts, companies, deals, activities, pipelines, registry, automations, sequences, templates, connections, webhooks, usage and settings
  flows:
  - authorizationCode
  required_by: >-
    every MCP tool (securitySchemes oauth2 / scopes [crm] on all 41 tools in mcp/relmcrm-com-mcp-tools-list.json);
    the OpenAPI root security requirement; the agent card security[]
  sources:
  - openapi/relmcrm-com-openapi.yml
  - well-known/relmcrm-com-oauth-authorization-server.json
  - well-known/relmcrm-com-oauth-protected-resource.json
granularity_note: >-
  Coarse by design for a workspace-scoped product; least-privilege for an agent is achieved by the MCP tool
  annotations (readOnlyHint / destructiveHint) that let a client gate confirmation, not by scope. An operator
  who needs a read-only credential has no scope to ask for.

Work with this as data

Every scope set here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for oauth scopes

4 MCP tools reach this
  • find_scopesBrowse and filter every scope set in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This scope set
curl "https://apis.io/api/v1/scopes/relmcrm-com-scopes"
All oauth scopes
curl "https://apis.io/api/v1/scopes?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.