Cube · Authentication Profile

Cubesoftware Authentication

Authentication

Cube secures its APIs with oauth2 across 1 declared security scheme, as derived from its OpenAPI definitions. OAuth 2.0 is offered via the authorizationCode flow(s).

CompanyFP&AFinancial PlanningFinanceBudgetingForecastingAnalyticsSpreadsheetsSaaS
Methods: oauth2 Schemes: 1 OAuth flows: authorizationCode API key in:

Security Schemes

OAuth2 oauth2
· flows: authorizationCode

Source

Authentication Profile

Raw ↑
generated: '2026-07-18'
method: searched
source: openapi/cubesoftware-openapi-original.yml
docs: https://api.cubesoftware.com/.well-known/oauth-authorization-server
summary:
  types:
  - oauth2
  oauth2_flows:
  - authorizationCode
  pkce: S256
  refresh_token: true
  token_endpoint_auth: client_secret_basic
schemes:
- name: OAuth2
  type: oauth2
  flows:
  - flow: authorizationCode
    authorizationUrl: https://portal.cubesoftware.com/o/authorize/
    tokenUrl: https://api.cubesoftware.com/o/token/
    scopes: [read, write, introspection]
  introspection_endpoint: https://api.cubesoftware.com/o/introspect/
  code_challenge_methods_supported: [S256]
  grant_types_supported: [authorization_code, refresh_token]
  token_endpoint_auth_methods_supported: [client_secret_basic]
  description: Standard Cube OAuth 2.0 flow
  sources:
  - openapi/cubesoftware-openapi-original.yml
  - well-known/cubesoftware-oauth-authorization-server.json
notes: >-
  Nearly every operation additionally requires an X-Company-ID header to scope the
  request to a specific Cube company/workspace (see conventions/).