Scopes
Scopes define the permissions of your API key.
Available Scopes
READ_APPOINTMENTS- View appointmentsWRITE_APPOINTMENTS- Create and update appointmentsCANCEL_APPOINTMENTS- Cancel appointmentsREAD_DEPARTMENTS- View departmentsREAD_AVAILABILITY- Check availabilityREAD_USERS- View users (limited)READ_ORGANIZATIONS- View organization information
There is no "full administrator" scope: an API key must always be granted each scope it needs explicitly (least privilege is enforced by default).
Choose the Right Scopes
Follow the principle of least privilege: only request the scopes you actually need.
Examples
Simple booking application:
READ_DEPARTMENTSWRITE_APPOINTMENTSREAD_APPOINTMENTS
Admin dashboard:
- All the individual scopes you need (
READ_APPOINTMENTS,WRITE_APPOINTMENTS,CANCEL_APPOINTMENTS,READ_DEPARTMENTS,READ_AVAILABILITY,READ_USERS,READ_ORGANIZATIONS)