Olympus Docs
ReferenceScopes

phone

`phone_number`, `phone_number_verified`. Add to schema if you collect phone.

OAuth2 scope: phone

Source: OIDC spec

Description

phone_number, phone_number_verified. Add to schema if you collect phone.

Requesting this scope

In the authorization URL:

GET /oauth2/auth?
  &scope=phone
  ...

Multiple scopes are space-separated.

Granting access

A client only receives this scope if it's on the client's allowed scope list. Configure in Athena → OAuth2 Clients → your client → Allowed Scopes.

Checking in your backend

The access token's scope claim contains the granted scopes:

const granted = info.scope?.split(" ") ?? [];
if (!granted.includes("phone")) return 403;

On this page