Post Oauth 2 Register

Deprecated
**Not the supported registration path.** Dynamic client registration is gated (`allowDynamicClientRegistration: false`); unauthenticated calls are rejected. Register clients via `POST /api/auth/admin/oauth-clients` (admin session or Initial Access Token) — see the self-service registration guide. Register an OAuth2 application

Authentication

AuthorizationBearer
Bearer token authentication

Request

This endpoint expects an object.
redirect_urislist of anyRequired
scopestring or nullOptional
client_namestring or nullOptional
client_uristring or nullOptional
logo_uristring or nullOptional
contactslist of any or nullOptional
tos_uristring or nullOptional
policy_uristring or nullOptional
software_idstring or nullOptional
software_versionstring or nullOptional
software_statementstring or nullOptional
post_logout_redirect_urislist of any or nullOptional
backchannel_logout_uristring or nullOptional
backchannel_logout_session_requiredboolean or nullOptional
token_endpoint_auth_methodstring or nullOptionalDefaults to client_secret_basic
jwksstring or nullOptional
jwks_uristring or nullOptional
grant_typeslist of any or nullOptionalDefaults to ["authorization_code"]
response_typeslist of any or nullOptionalDefaults to ["code"]
typestring or nullOptional
subject_typestring or nullOptional

Response

OAuth2 application registered successfully
client_idstring
Unique identifier for the client
client_secretstringOptional
Secret key for the client
client_secret_expires_atdoubleOptional
Time the client secret will expire. If 0, the client secret will never expire.
scopestringOptional

Space-separated scopes allowed by the client

user_idstringOptional
ID of the user who registered the client, null if registered anonymously
client_id_issued_atdoubleOptional
Creation timestamp of this client
client_namestringOptional
Name of the OAuth2 application
client_uristringOptional
Name of the OAuth2 application
logo_uristringOptional
Icon URL for the application
contactslist of stringsOptional
List representing ways to contact people responsible for this client, typically email addresses
tos_uristringOptional
Client's terms of service uri
policy_uristringOptional
Client's policy uri
software_idstringOptional
Unique identifier assigned by the developer to help in the dynamic registration process
software_versionstringOptional

Version identifier for the software_id

software_statementstringOptional
JWT containing metadata values about the client software as claims
redirect_urislist of stringsOptional
List of allowed redirect uris
post_logout_redirect_urislist of stringsOptional
List of allowed logout redirect uris
backchannel_logout_uristringOptionalformat: "uri"

RP URL to receive signed Logout Tokens when the end-user’s OP session terminates

backchannel_logout_session_requiredbooleanOptional

Whether the RP requires a sid claim in every Logout Token

token_endpoint_auth_methodenumOptional
Requested authentication method for the token endpoint
Allowed values:
grant_typeslist of enumsOptional
Requested authentication method for the token endpoint
Allowed values:
response_typeslist of enumsOptional
Requested authentication method for the token endpoint
Allowed values:
publicbooleanOptional
Whether the client is public as determined by the type
typeenumOptional
Type of the client
Allowed values:
disabledbooleanOptional
Whether the client is disabled

Errors

400
Bad Request Error
401
Unauthorized Error
403
Forbidden Error
404
Not Found Error
429
Too Many Requests Error
500
Internal Server Error