Announcements

Help Wizard

Step 1

NEXT STEP

FAQs

Please see below the most popular frequently asked questions.

Loading article...

Loading faqs...

VIEW ALL

Ongoing Issues

Please see below the current ongoing issues which are under investigation.

Loading issue...

Loading ongoing issues...

VIEW ALL

[All Platforms] Manage Third Party Access Permissions

I imported all my songs from Rdio by granting access to 3rd party web apps like Mooval , now I want to stop them from SPYING on my activities.

 

How do we manage 3rd party application access to our account (revoke access to applications, so they can no longer access your account), something similar to the way Twitter does it, or Last.fm

 

It's misleading to have an ability to grant access with no way to revoke it. I would never have granted access to 3rd party apps if I had known that it was not possible to manage these access grants.

 

This actually puts me on the edge of flat out removing my Spotify account entirely because it's a huge breach of trust

 

I DON'T WANT to be DATA MINED BY OTHER COMPANIES and STRANGERS, Please let us remove SPYS like Google does:

 

Screen_shot_2012-01-29_at_6.40.08_PM_610x277.png

Updated: 2016-08-10

We’re happy to announce that you can now manage access to another app or integration with Spotify. Simply head to your account page and select Apps. You can click revoke access on things like partner apps. Thats it!



Comments
1123124333

Any progress?

Mikimoto

This is very frustrating....  Please implement it quickly!

chipairon

@Rorey Since your comment from last year on this thread there hasn't been any further update 😕

Could anyone inform us about progress being done on this issue?

Thanks

melvinloos

This is just ridiculous... Spotify API uses a standardized way of allowing third-party apps access on behalve of the user. The protocol used is oauth2 and I have implemented it several times myself... this functionality is part of the extended specification however in a production environment should be mandatory. It actually is a pretty simple change since the proces of granting a third-party access is done through tokens. When given an app access it simply returns a token. To verify this on subsequent request it also has this token stored in a database. So simply put, revoking access is done by simply removing this recorded token from the database ( or making it expire by setting the expiration date since tokens are expirable ).

To incorporate this in Spotify should be a low effort issue and could have possibly been planned as a 'quick win' in your sprints ( you guys are working AGILE right? 😉 ). And heck if you're short on developer, I wouldn't even mind doing it myself 😉

meahtenoha
Status changed to: Implemented
Updated: 2016-08-10

We’re happy to announce that you can now manage access to another app or integration with Spotify. Simply head to your account page and select Apps. You can click revoke access on things like partner apps. Thats it!



Mikimoto

Great! Congratulations for implementing this, it was needed!

espiegel

Finally

888margo888

Thanks for posting the message Meredith.

To Spotify: who in your company is keeping track of things like this? When community members seem to know more than your tech people it is worrisome that security is not a HIGH PRIORITY for a world wide company.  Why are you not protecting your millions of listeners?  It makes one wonder what other security flaws are going on. It is bad enough that you cannot figure out how to protect families on your Family Plan with the ability to block explicit music but to sell out our security? Please Please protect your customers. 

jfakey

 So has this been implemented?  How can I do this?

dd_23

The answer is 4 posts above your question.

Go to https://www.spotify.com/us/account/apps/