Skip to main content
photon account oauth covers the OAuth side of your account:
  • Connections are applications you have authorized to act on your behalf.
  • Scopes are the delegated permissions Photon offers.
OAuth clients — applications you build — belong to an organization and are managed with photon org oauth-client. Browse the automatic command reference.

Scopes

This reads the live scope catalogue from Photon’s public /v1/auth/oauth/scopes endpoint. The CLI never exposes Photon’s internal scope contract or calls the upstream identity provider directly.

Connections

Connections are applications you authorized, not clients you own. Revoking one removes your grant without deleting the underlying OAuth client.
Listing is cursor-based rather than token-based: use --after, --before, --limit, and --order, and JSON output includes the server’s next and previous cursors. Revocation prompts interactively and needs --force in scripts. The application must be authorized again before it can get another token for you.