TokenExchangeRequest

  • grant_type
    enum
    const:  
    urn:ietf:params:oauth:grant-type:token-exchange
    required

    The RFC 8693 token-exchange grant type.

    values
    • urn:ietf:params:oauth:grant-type:token-exchange
  • subject_token
    Type: string
    required

    The API key to delegate from (the parent). Its secret, fff_live_….

  • actor
    Type: string
    max length:  
    200

    Optional audit label for the sub-agent.

  • expires_in
    Type: integer
    greater than:  
    0
    max:  
    3600

    Requested lifetime (s). Capped at one hour and the parent’s remaining lifetime. Defaults to 900.

  • scope
    Type: string

    Space-delimited scopes to grant the child (a subset of the parent’s). Omit to inherit the parent grant.

  • subject_token_type
    enum
    const:  
    urn:ietf:params:oauth:token-type:access_token

    Optional; defaults to access_token.

    values
    • urn:ietf:params:oauth:token-type:access_token