Superset · OAuth Scopes

Superset OAuth Scopes

OAuth 2.0 searched

Superset publishes 4 OAuth 2.0 scopes via the authorizationCode flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Superset API on a user’s behalf.

Tokens are issued from https://api.superset.sh/api/auth/oauth2/token.

This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.

CompanyDeveloper ToolsAI AgentsCode EditorIDECoding AgentsMCPCLISDKGit WorktreesAutomationY Combinator
Scopes: 4 Flows: authorizationCode Method: searched

OAuth endpoints

Authorization URL
https://api.superset.sh/api/auth/oauth2/authorize
Token URL
https://api.superset.sh/api/auth/oauth2/token
Flows
authorizationCode

Scopes (4)

ScopeDescriptionFlows
openid OpenID Connect authentication.
profile Access to the user's basic profile.
email Access to the user's email address.
offline_access Issue a refresh token for offline/long-lived access.

Source

OAuth Scopes

superset-scopes.yml Raw ↑
generated: '2026-07-21'
method: searched
source: https://api.superset.sh/.well-known/oauth-authorization-server
docs: https://docs.superset.sh/mcp
schemes:
  - name: OAuth2.1
    source: https://api.superset.sh/.well-known/oauth-authorization-server
    issuer: https://api.superset.sh
    flows:
      - flow: authorizationCode
        authorizationUrl: https://api.superset.sh/api/auth/oauth2/authorize
        tokenUrl: https://api.superset.sh/api/auth/oauth2/token
scopes:
  - scope: openid
    description: OpenID Connect authentication.
    sources: [https://api.superset.sh/.well-known/oauth-authorization-server]
  - scope: profile
    description: Access to the user's basic profile.
    sources: [https://api.superset.sh/.well-known/oauth-authorization-server]
  - scope: email
    description: Access to the user's email address.
    sources: [https://api.superset.sh/.well-known/oauth-authorization-server]
  - scope: offline_access
    description: Issue a refresh token for offline/long-lived access.
    sources: [https://api.superset.sh/.well-known/oauth-authorization-server]