An API Access Management Administrator or other non-Super Admin is attempting to enable Okta API Scopes for an OpenID Connect (OIDC) Application in Okta, but lacks the API Scopes tab to do so.
- API Access Management
- Okta API Scopes
- OpenID Connect (OIDC)
- OAuth for Okta
- Administrator Roles
The following tab and section are missing when checking an OIDC Application for them:
This is expected behavior. Only Super Administrators have the ability to see and change Okta API Scopes within an OpenID Connect application. API Access Management Administrators can change the details on Authorization Servers, and other roles can view them as shown in the Admin Permissions Matrix, but these do not include the ability to manage access to Okta API Scopes. Only Super Administrators have permission to manage these within the apps.
