Genesys Cloud organizations, by default currently, do not enforce scopes on OAuth clients. Enabling OAuth scopes immediately affects any current applications leveraging an external OAuth client. Enforcing scopes enhances security and privacy by limiting the data accessible by an external application. If scopes are not enforced, applications have the same access as the user of the application, including administrators. Exercise caution when enabling enforcement of scopes within your Genesys Cloud organization. This procedure will guide an administrator through enabling OAuth client authorization and Scope enforcement for your organization.
Before you enable OAuth scope enforcement, first determine your existing OAuth clients that have not been authorized.
Get user feedback about articles.