Skip to content

Conversation

@gaokevin1
Copy link

This PR allows you to define specific scopes in your OAuth token, to be validated against specific tools in your MCP server.

If the token doesn't possess the right scopes, it will return a 403 insufficient scopes, in accordance with the MCP spec.

@gaokevin1 gaokevin1 changed the title Added Tool-Level Scope Validation to mcp handler Added Tool-Level Scope Validation to mcp-handler Nov 5, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants