Xoxoday · OAuth Scopes
Xoxoday OAuth Scopes
OAuth 2.0
searched
Xoxoday publishes 2 OAuth 2.0 scopes via the clientCredentials flow. Scopes are the fine-grained permissions an application requests at authorization time to act against the Xoxoday API on a user’s behalf.
Tokens are issued from https://accounts.xoxoday.com/chef/v1/oauth/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
RewardsEmployee EngagementGift CardsIncentivesLoyaltyRecognitionDigital RewardsPoints ProgramsRedemptionsFintechLoyalty & Incentives
Scopes: 2
Flows: clientCredentials
Method: searched
OAuth endpoints
Token URL
https://accounts.xoxoday.com/chef/v1/oauth/token
https://accounts.xoxoday.com/chef/v1/oauth/token
Flows
clientCredentials
clientCredentials
Scopes (2)
| Scope | Description | Flows |
|---|---|---|
| user_session | Company scope used only for the case of Company access_token generation; compulsory when the authorization request is for company session generation. | |
| company_session | Company scope for StoreFront OAuth authorization requests. |
📄 Provider scope reference: https://xoxoday.gitbook.io/plum/developer-resources/storefront-integration/api-endpoints/authorization
Source
OAuth Scopes
Work with this as data
Every scope set here is available over the APIs.io API and to AI agents over MCP.