Skip to main content
GET
Error

Response

The metadata document.

RFC 9728 protected resource metadata.

resource
string
required

The resource identifier your token must be audienced to (RFC 8707).

authorization_servers
string[]

Issuer urls of the authorization servers this resource advertises for discovery. Optional, as RFC 9728 section 2 allows: a deployment may choose not to advertise some or all of the authorization servers it accepts. When it advertises none, the field is absent rather than an empty array, and the client is told where to authenticate out of band.

bearer_methods_supported
string[]
scopes_supported
enum<string>[]

The scopes an authorization server may grant for this resource.

A scope name from the one vocabulary both credential channels use.

Available options:
devices:read,
devices:act,
devices:lease,
runs:start,
orders:place,
apps:read,
apps:write,
apps:delete
resource_documentation
string