Get started

Permissions & scopes

Give each connection just the capabilities it needs.

Take the docs with youMarkdown for your editor or agent.

The complete scope map is included with the catalog. Read permissions cover profile, the authorized workspace, connected social accounts, content, media, products, schedules, automations, analytics and jobs. Separate create/manage/delete permissions cover content, products, carousels, captions and automations; publishing and scheduling have distinct permissions.

Tool discovery exposes only the tools allowed by the current access token. An attempted known tool requiring another scope returns HTTP 403 with an OAuth insufficient_scope challenge. The user must authorize the additional access; the agent cannot grant it to itself.

read:jobs is needed to poll generic operation IDs. Polling also requires the original tool's permission and the same connection, user and workspace. Plan entitlements and credits remain enforced in addition to OAuth scopes. Analytics currently requires Pro. No MCP operation upgrades subscriptions, grants credits, changes provider credentials or disconnects social accounts.

Scope reference

Exported from the same server configuration as the tool catalog.

ScopePermission
read:profileRead your profile and credit balance
read:workspacesRead the workspace you authorize
read:socialList your connected social accounts (without credentials)
read:contentRead and search your posts, drafts and carousels
create:contentCreate draft posts using text or existing media
delete:contentRequest deletion of your content (requires approval)
read:mediaRead your media library
read:productsRead your products and editorial profiles
create:productsAdd products to your workspace
manage:productsCreate and update your products
delete:productsRequest deletion of products (requires approval)
create:carouselsGenerate carousels using your credits
manage:carouselsRegenerate and approve carousels using your credits
create:captionsGenerate caption, hook and hashtag variations
read:schedulesRead your publishing schedules
publish:postsRequest publication to social accounts (requires approval)
publish:schedulesRequest scheduled publication (requires approval)
read:automationsRead automation settings and run history
create:automationsCreate paused generation automations
manage:automationsEdit or run automations (activation requires approval)
delete:automationsRequest deletion of automations (requires approval)
read:analyticsRead stored real post analytics, subject to your plan
read:jobsCheck requests made by this connection