OAuth 2.0 Scopes for Google APIs

  • This document provides a list of OAuth 2.0 scopes for accessing Google APIs based on the required level of access.

  • Sensitive scopes, indicated in the Google Cloud Console, require review by Google.

  • Many scopes overlap, and it is recommended to use a scope that is not sensitive.

  • Public applications using scopes that access user data must complete a verification process.

  • An "unverified app" message during testing indicates the need to submit a verification request.

This document lists the OAuth 2.0 scopes that you might need to request to access Google APIs, depending on the level of access you need. Sensitive scopes require review by Google and have a sensitive indicator on the Google Cloud Console's OAuth consent screen configuration page. Many scopes overlap, so it's best to use a scope that isn't sensitive. For information about each method's scope requirements, see the individual API documentation.

Access Approval API, v1

Scope Description
https://www.googleapis.com/auth/cloud-platform See, edit, configure, and delete your Google Cloud data and see the email address for your Google Account.

Access Context Manager API, v1

Scope Description
https://www.googleapis.com/auth/cloud-platform See, edit, configure, and delete your Google Cloud data and see the email address for your Google Account.

Ad Exchange Buyer API II, v2beta1

Scope Description
https://www.googleapis.com/auth/adexchange.buyer Manage your Ad Exchange buyer account configuration

Address Validation API, v1

Scope Description
https://www.googleapis.com/auth/cloud-platform See, edit, configure, and delete your Google Cloud data and see the email address for your Google Account.

Admin SDK API, v1

Scope Description
https://www.googleapis.com/auth/admin.reports.audit.readonly View audit reports for your Google Workspace domain
https://www.googleapis.com/auth/admin.reports.usage.readonly View usage reports for your Google Workspace domain

Admin SDK API, v1

Scope Description
https://www.googleapis.com/auth/admin.datatransfer View and manage data transfers between users in your organization
https://www.googleapis.com/auth/admin.datatransfer.readonly View data transfers between users in your organization

Admin SDK API, v1

Scope Description
https://www.googleapis.com/auth/admin.chrome.printers See, add, edit, and permanently delete the printers that your organization can use with Chrome
https://www.googleapis.com/auth/admin.chrome.printers.readonly See the printers that your organization can use with Chrome
https://www.googleapis.com/auth/admin.directory.customer View and manage customer related information
https://www.googleapis.com/auth/admin.directory.customer.readonly View customer related information
https://www.googleapis.com/auth/admin.directory.device.chromeos View and manage your ChromeOS devices' metadata
https://www.googleapis.com/auth/admin.directory.device.chromeos.readonly View your ChromeOS devices' metadata
https://www.googleapis.com/auth/admin.directory.device.mobile View and manage your mobile devices' metadata
https://www.googleapis.com/auth/admin.directory.device.mobile.action Manage your mobile devices by performing administrative tasks
https://www.googleapis.com/auth/admin.directory.device.mobile.readonly View your mobile devices' metadata
https://www.googleapis.com/auth/admin.directory.domain View and manage the provisioning of domains for your customers
https://www.googleapis.com/auth/admin.directory.domain.readonly View domains related to your customers
https://www.googleapis.com/auth/admin.directory.group View and manage the provisioning of groups on your domain
https://www.googleapis.com/auth/admin.directory.group.member View and manage group subscriptions on your domain
https://www.googleapis.com/auth/admin.directory.group.member.readonly View group subscriptions on your domain
https://www.googleapis.com/auth/admin.directory.group.readonly View groups on your domain
https://www.googleapis.com/auth/admin.directory.orgunit View and manage organization units on your domain
https://www.googleapis.com/auth/admin.directory.orgunit.readonly View organization units on your domain
https://www.googleapis.com/auth/admin.directory.resource.calendar View and manage the provisioning of calendar resources on your domain
https://www.googleapis.com/auth/admin.directory.resource.calendar.readonly View calendar resources on your domain
https://www.googleapis.com/auth/admin.directory.rolemanagement Manage delegated admin roles for your domain
https://www.googleapis.com/auth/admin.directory.rolemanagement.readonly View delegated admin roles for your domain
https://www.googleapis.com/auth/admin.directory.user View and manage the provisioning of users on your domain
https://www.googleapis.com/auth/admin.directory.user.alias View and manage user aliases on your domain
https://www.googleapis.com/auth/admin.directory.user.alias.readonly View user aliases on your domain
https://www.googleapis.com/auth/admin.directory.user.readonly See info about users on your domain
https://www.googleapis.com/auth/admin.directory.user.security Manage data access permissions for users on your domain
https://www.googleapis.com/auth/admin.directory.userschema View and manage the provisioning of user schemas on your domain
https://www.googleapis.com/auth/admin.directory.userschema.readonly View user schemas on your domain
https://www.googleapis.com/auth/cloud-platform See, edit, configure, and delete your Google Cloud data and see the email address for your Google Account.

AdMob API, v1

Scope Description
https://www.googleapis.com/auth/admob.readonly See your AdMob data
https://www.googleapis.com/auth/admob.report See your AdMob data

AdSense Management API, v2

Scope Description
https://www.googleapis.com/auth/adsense View and manage your AdSense data
https://www.googleapis.com/auth/adsense.readonly View your AdSense data

AdSense Platform API, v1

Scope Description
https://www.googleapis.com/auth/adsense View and manage your AdSense data
https://www.googleapis.com/auth/adsense.readonly View your AdSense data

Advisory Notifications API, v1

Scope Description
https://www.googleapis.com/auth/cloud-platform See, edit, configure, and delete your Google Cloud data and see the email address for your Google Account.

Agent Registry API, v1alpha

Scope Description