DEV Community

Ramiro for Auth0

Posted on • Edited on • Originally published at auth0.com

2 2

On The Nature of OAuth2’s Scopes

Scopes only come into play in delegation scenarios, and always limit what an app can do on behalf of a user: a scope cannot allow an application to do more than what the user can do.

Auth0 Principal Architect Vittorio Bertocci on why you shouldn’t use OAuth2 scopes for every authorization scenario.

Read on 🧙🏻‍♂️

On The Nature of OAuth2’s Scopes

Top comments (0)

Billboard image

The Next Generation Developer Platform

Coherence is the first Platform-as-a-Service you can control. Unlike "black-box" platforms that are opinionated about the infra you can deploy, Coherence is powered by CNC, the open-source IaC framework, which offers limitless customization.

Learn more

👋 Kindness is contagious

Please leave a ❤️ or a friendly comment on this post if you found it helpful!

Okay