OAuth Authorization Server Metadata

​

OAuth 2.0 Authorization Server Metadata, per RFC 8414. Advertises the issuer and OAuth endpoints used for the authorization-code flow with PKCE. Also served at /.well-known/openid-configuration. Unauthenticated.

This endpoint is served by the Paperpile API host, not the platform host — it is the authorization server that /.well-known/oauth-protected-resource points to.

Responses

  • application/json
Request Example for get/.well-known/oauth-authorization-server
curl https://stage-api.paperpile.com/.well-known/oauth-authorization-server
{
  "issuer": "https://stage-api.paperpile.com",
  "authorization_endpoint": "https://stage-api.paperpile.com/api/oauth/authorize",
  "token_endpoint": "https://stage-api.paperpile.com/api/oauth/token",
  "registration_endpoint": "https://stage-api.paperpile.com/api/oauth/register",
  "code_challenge_methods_supported": [
    "S256"
  ],
  "response_types_supported": [
    "code"
  ],
  "grant_types_supported": [
    "authorization_code"
  ],
  "token_endpoint_auth_methods_supported": [
    "none",
    "client_secret_basic",
    "client_secret_post"
  ]
}