Skip to content

Scopes

ScopeGrants
api:discoveryGET /v1
audit:readRead your audit trail and verify its hash chain
customers:readRead customers and departments
customers:writeCreate/update customers and departments, and set the e-invoicing endpoint
customerchecks:readRead customer checks (AML/KYC), their parties and documentation
customerchecks:writeStart a customer check and start a periodic review
dispatches:readRead dispatches, their delivery proof, and which channels are open
properties:readRead rental units, tenancies and portfolio areas
properties:writeCreate and update rental units and areas
events:readRead the event feed (GET /v1/events)
finance:readRead open items — what each customer owes you and how old it is
invoices:readRead invoices, PDFs and timelines
invoices:writeCreate drafts, issue, send, delete drafts
members:readRead members and the role catalogue
members:manageAssign member roles (privilege-escalation surface — grant sparingly)
notifications:readRead the organisation’s notifications and the type catalogue
notifications:writeAcknowledge notifications (a receipt for your key, not for your colleagues)
orders:readRead orders, their invoices, timeline and confirmation PDF
orders:writeCreate, confirm, invoice, cancel orders; create orders from accepted quotes
paymentplans:readRead payment plans, what a customer may be offered, and the plan covering an invoice
paymentplans:writePropose and close payment plans (activation is the customer’s signature — never an API call)
payments:readRead payments and receipts
payments:writeRegister manual payments
products:readRead products and the chart of accounts
products:writeCreate/update products and accounts
quotes:readRead quotes, their attachments, timeline and quote PDF
quotes:writeCreate, send, delete draft quotes; attach documents; turn accepted quotes into orders or invoices
reminders:readRead reminder history and settings
reminders:writeSend ad-hoc reminders, configure reminder settings and flows
settings:readRead organisation settings (numbering, tone, payment methods)
settings:writeWrite branding, payment domain and customer-portal settings
subscriptions:readRead subscriptions, their invoices and previews
subscriptions:writeCreate/update subscriptions, transitions, run now
tasks:readRead the task queue — including the approvals waiting for your yes
tasks:writeAnswer tasks: approve or decline a case start, collections, bailiff or lawsuit
cases:readRead collection cases
cases:writeCreate collection cases
contracts:readRead contracts, their parties, audit log, sealed PDF and your templates
contracts:writeCreate, send and cancel contracts — never sign them
settlements:readRead settlement history (GET /v1/settlements)
terms:acceptSubmit terms-acceptance evidence
webhooks:manageAdminister webhook endpoints, rotate secrets, test, replay

Grant a key only the scopes it needs.

Legacy scope names (sager:read, sager:write, afregninger:read, betingelse:accept) remain valid as aliases on already-issued keys — new keys use the names above.