Announcements

Help Wizard

Step 1

NEXT STEP

Scope hidding

Scope hidding

Device

Windows 10

Operating System

(iOS 10, Android Oreo, Windows 10,etc.)

 

My Question or Issue

 

Hello,

 
I was doing some tests with spotify api, and I've found a way to hide the scopes a user allows an application to use when you access accounts.spotify.com/authorize to get the tokens. For example, an application can ask to be able to see the user's public information, but at the end, the application gets a token to see the user's private information.
 
In the pictures attached, we see that the application is asking for being able to modify playlist.Capture.PNG
But, in reality I asked for :

And so I get (I've hidden the tokens) :

Capture.PNG

even if the https://accounts.spotify.com/authorize was not showing it.

 

I don't know if this is already known or if it is not important, but if not you can contact me back, so I could explain to you the technical details. 
 
Best regards.
Reply
0 Replies

Suggested posts

Let's introduce ourselves!

Hey there you,   Yeah, you! 😁   Welcome - we're glad you joined the Spotify Community!   While you here, let's have a fun game and get…

ModeratorStaff / Moderator/ 4 years ago  in Social & Random