Descope OAuth Applications API
Standards-compliant OAuth 2.1 / OIDC authorization server endpoints that let Descope act as an identity provider for inbound third-party applications and agentic clients. Covers the full `/oauth2/v1/...` surface — authorize, token, revoke, userinfo, device authorization, CIBA backchannel authorization, and dedicated agentic / MCP-server registration paths (`/oauth2/v1/apps/agentic/{project_id}/{mcp_server_id}/authorize|token`) for AI agents that need delegated user credentials. Supports PKCE, JAR (RFC 9101) request objects, DPoP, and dynamic client registration via SCIM v2.
Descope OAuth Applications API is one of 5 APIs that Descope publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
Tagged areas include OAuth, OIDC, Inbound Apps, Third-Party, and Federation. The published artifact set on APIs.io includes API documentation and an OpenAPI specification.