API reference

Exchange client credentials for a one-hour access token

POST
/v1/oauth/token

Authenticate the client with HTTP Basic (client_id as the user name, client_secret as the password; recommended) or with client_id and client_secret in the form body, never both. To try it in a browser, use the interactive docs at https://api.alltoogether.com/docs.

Request Body

application/x-www-form-urlencoded
  1. body
grant_type*"client_credentials"
Value in"client_credentials"
scope?string

Space-separated subset of the credentials' scopes. Defaults to all of them.

client_id?string
Match^atgc_[0-9a-f]{24}$
client_secret?string
Match^atgs_[A-Za-z0-9_-]{43}$

Response Body

Token issued.

application/json
  1. response
access_token*string
Match^atgt_[A-Za-z0-9_-]{43}$
token_type*string
expires_in*integer
scope*string
curl -X POST "https://example.com/v1/oauth/token" \  -H "Content-Type: application/x-www-form-urlencoded" \  -d 'grant_type=client_credentials'
{  "access_token": "string",  "token_type": "Bearer",  "expires_in": 3600,  "scope": "string"}