ShareThis · OAuth Scopes

ShareThis OAuth Scopes

OAuth 2.0 probed

ShareThis uses OAuth 2.0 but publishes no discrete scopes — access is governed by the grant itself (e.g. client-credentials or role-based authorization) rather than per-scope consent.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanySocial SharingWebsite ToolsAudience DataAdvertising TechnologyAnalyticsConsent ManagementPublishingMCP
Scopes: 0 Flows: Method: probed

Scopes (0)

ShareThis implements OAuth 2.0 but publishes no discrete scopes — access is governed by the grant itself (client-credentials or role-based authorization) rather than per-scope consent.

The OpenAPI document declares no oauth2 securityScheme, so derive-oauth-scopes.py correctly found nothing to derive from the spec. The scope surface here belongs to the MCP server instead, and was read directly from its live RFC 8414 / RFC 9728 discovery documents rather than from the contract.

Source

OAuth Scopes

Raw ↑
generated: '2026-08-27'
method: probed
source: https://mcp.sharethis.com/.well-known/oauth-authorization-server and /.well-known/oauth-protected-resource (2026-08-27)
note: >-
  The OpenAPI document declares no oauth2 securityScheme, so derive-oauth-scopes.py correctly found
  nothing to derive from the spec. The scope surface here belongs to the MCP server instead, and was
  read directly from its live RFC 8414 / RFC 9728 discovery documents rather than from the contract.
surface: ShareThis MCP Server
resource: https://mcp.sharethis.com
authorization_servers:
- https://mcp.sharethis.com
scopes:
- name: mcp:tools
  description: >-
    Authorizes invocation of the ShareThis MCP tool set — property create/list/get/validate and app
    upsert/list/get/delete/liveview.
  source: scopes_supported in the authorization-server and protected-resource metadata
granularity:
  level: coarse
  assessment: >-
    A single scope covers all nine tools, including the one destructive operation
    (sharethis_apps_delete). There is no read-only scope, so an agent granted access to list
    properties is necessarily also granted the ability to delete an app configuration. Least
    privilege is not expressible against this authorization server today.
rest_api_scopes:
  present: false
  note: >-
    The Platform API's bearer JWT carries no scopes — authorization is all-or-nothing on the
    account.

Work with this as data

Every scope set here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for oauth scopes

4 MCP tools reach this
  • find_scopesBrowse and filter every scope set in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This scope set
curl "https://apis.io/api/v1/scopes/sharethis-scopes"
All oauth scopes
curl "https://apis.io/api/v1/scopes?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.