How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Scalar OAuth API

The OAuth API from Scalar — 7 operation(s) for oauth.

Scalar OAuth API is one of 39 APIs that Scalar publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Authentication. The published artifact set on APIs.io includes an OpenAPI specification.

This API exposes 8 operations across 7 paths, and defines 21 schemas. It is described by OpenAPI 3.2.0, at version 0.1.0.

Requests are made against a single base URL, https://api.scalar.com/core.

8 operations 7 paths 21 schemas 1 DELETE2 GET5 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
0.1.0
Server
https://api.scalar.com/core
Authentication
HTTP Bearer
Resource Areas
1

Authentication & Security 1

Scalar OAuth API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (JWT) (BearerAuth). By default, every request must be authenticated.

Paths & Operations 8

Across 7 paths, the API surfaces 8 operations — 1 DELETE, 2 GET, 5 POST. Each is listed below with its method, path, parameters, and response codes.

OAuth 8
POST
/oauth/requests
Post oauth requests
postOauthRequests body → 200400401403404422500
GET
/oauth/requests/{uid}
Get oauth requests uid
getOauthRequestsUid 1 param → 200400401403404422500
POST
/oauth/requests/{uid}/decision
Post oauth requests uid decision
postOauthRequestsUidDecision 1 param body → 200400401403404422500
POST
/oauth/token
Post oauth token
postOauthToken body → 200400401403404422500
POST
/oauth/revoke
Post oauth revoke
postOauthRevoke body → 200400401403404422500
POST
/teams/oauth-clients
Post teams oauth clients
postTeamsOauthClients body → 200400401403404422500
GET
/teams/oauth-clients
Get teams oauth clients
getTeamsOauthClients → 200400401403404422500
DELETE
/teams/oauth-clients/{uid}
Delete teams oauth clients uid
deleteTeamsOauthClientsUid 1 param → 200400401403404422500

Schemas 21

The contract defines 21 schemas that model the data the API accepts and returns. The most detailed are oauth-client-created (9 properties), oauth-client-list-item (8 properties), oauth-token-request (8 properties), oauth-authorize-params (7 properties). Each schema is shown below with its type and property counts.

404
object
2 properties 2 required
422
object
2 properties 2 required
oauth-token-request
object
8 properties 1 required
oauth-authorization-request-view
object
4 properties 4 required
oauth-revoke-request
object
4 properties 1 required
nanoid
string
oauth-authorize-result
oauth-client-type
string
timestamp
integer
401
object
2 properties 2 required
oauth-scope
string
oauth-client-created
object
9 properties 8 required
oauth-decision
object
1 property 1 required
oauth-client-list-item
object
8 properties 8 required
403
object
2 properties 2 required
oauth-token-response
object
5 properties 5 required
400
object
2 properties 2 required
oauth-decision-result
object
1 property 1 required
oauth-client-create
object
4 properties 4 required
500
object
2 properties 2 required
oauth-authorize-params
object
7 properties

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

scalar-oauth-api-openapi.yml Raw ↑

Other APIs Scalar publishes across the network.

Scalar API References
Scalar API Client
Scalar Docs
Scalar Registry
Scalar SDKs
Scalar CLI
Scalar Access Groups API
Scalar Analytics API
Scalar API Docs API
Scalar Auth API
Scalar Docs API
Scalar Docs Projects API
Where this information came from

This is an independent, third-party profile of Scalar OAuth API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.