OAuth 2.1
Authorize
Sends the user to the consent screen (signing in first if needed). On approval it redirects to redirect_uri?code=…&state=…; on denial error=access_denied. PKCE (S256) is mandatory.
Authorization
No authentication required.
Query parameters
response_typestringrequiredOnly
code.Values
codeclient_idstringrequiredClient id from registration or a CIMD URL.
redirect_uristringrequiredA registered redirect URI.
scopestringoptionalcrm.read crm.write (and optional offline_access). Both when empty.statestringoptionalClient CSRF value (echoed back).
code_challengestringrequiredBASE64URL(SHA256(code_verifier)).
code_challenge_methodstringrequiredOnly
S256.Values
S256resourcestringoptionalThe MCP resource (
https://<install>/mcp) — leave empty for REST.Request
https://ornek.solk.app/oauth/authorize?response_type=code&client_id=crm_Jq8w…&redirect_uri=https%3A%2F%2Fuygulamaniz.com%2Foauth%2Fcallback&scope=crm.read%20crm.write&state=xyz123&code_challenge=E9Melhoa2Owv…&code_challenge_method=S256Response
HTTP/1.1 302 Found
Location: https://uygulamaniz.com/oauth/callback?code=Zx8…&state=xyz123