v1

latestOpenAPI 3.1.02026-07-261770816.7 KB

Copy of Generate token

post/introspect

Response

200

activeboolean required

Whether the token is currently valid. false when the token cannot be found, has expired, has been revoked, is bound to a different client, or belongs to a user or organization that has been disabled.

scopestring

Space-separated list of OAuth 2.0 scopes granted to this token. For access tokens, reflects the scopes encoded in the JWT at issuance. For refresh tokens, reflects the scopes stored in the token record at the time of authorization.

client_idstring

The public key of the client application this token was issued to. Can be used to verify which integration or application authorized the token.

substring

The subject of the token — identifies the user on whose behalf the token was issued. For user-authorized tokens (authorization code and refresh token grants), this is the user's ID. For service account tokens (client credentials grant), this is the ID of the organization owner associated with the client application.

issstring

The issuer of the token. Identifies the authorization server that minted this token. Always set to the auth domain (e.g. https://auth.greenhouse.io).

iatinteger

The time at which the token was issued.

expinteger

The time at which the token expires. Tokens past this time will return active: false.

jtistring

A unique identifier for this specific token instance. Can be used to correlate introspection responses with token issuance records.

token_typestring

The token type. Always "bearer". Not present in refresh token responses.

usernamestring

The email address of the user associated with the token. null if the user record cannot be resolved. Not present in refresh token responses.

nbfinteger

The earliest time at which the token is considered valid ("not before"). Set to the same value as iat. Not present in refresh token responses.

audstring

The intended audiences of the token — the resource servers this token is valid for (e.g. ["https://harvest.greenhouse.io"]). Not present in refresh token responses.

Example response

{
  "scope": "eyJhbGciOiJSUzI1NiJ9.eyJpc3MiOiJhdXRoLmdyZWVuaG91c2UuaW8iLCJzdWIiOjUxMjQ4NjIwMDQsImF1ZCI6WyJoYXJ2ZXN0LmdyZWVuaG91c2UuaW8iXSwiZXhwIjoxNzQxODEwMzM4LCJpYXQiOjE3NDE4MDY3MzgsImp0aSI6IjlGNVhHMStMZzFVb2pYd2IrL0FJVWZaYSt3M2pXZlovWVJ2bk1mU3FXT0ZseHZ1cnc5MDZpOUgzTEM5cjlKQ0YiLCJzY29wZSI6ImF1ZGl0bG9nOmV2ZW50czpsaXN0IGhhcnZlc3Q6dXNlcnM6bGlzdCIsInZlcnNpb24iOjEuMCwic2lsbyI6NCwiYWN0Ijp7Im9yZ2FuaXphdGlvbi5pZCI6NDAwMDAwMTAwNCwib3JnYW5pemF0aW9uLm5hbWUiOiJCdXNpbmVzcyAmIENvcnBvcmF0aW9uIChCdXNpbmVzcyBDb3Jwb3JhdGlvbikiLCJjcmVkZW50aWFsLnR5cGUiOiJBdXRoOjpQcm92aWRlcjo6TW9kZWxzOjpBY2Nlc3NUb2tlbk1ldGEiLCJjcmVkZW50aWFsLmlkIjo0MDE5NzUxMDA0LCJjcmVkZW50aWFsLmRlc2NyaXB0aW9uIjpudWxsLCJwYXJ0bmVyLmlkIjpudWxsLCJwYXJ0bmVyLm5hbWUiOm51bGwsImNsaWVudC5pZCI6InM1RDk5U2s3UW5pV0tEd3F5aERUSDRyTERuNkx2M1Y5WUtWZS00IiwiY2xpZW50Lm5hbWUiOiJPQXV0aCAyLjAgVGVzdCIsImNsaWVudC50eXBlIjoiQXV0aDo6Q2xpZW50QXBwbGljYXRpb25zOjpNb2RlbHM6OkhhcnZlc3RPcmdhbml6YXRpb25DbGllbnRBcHBsaWNhdGlvbiJ9fQ.mpm9yPz0gerzk2oaNy5wBw_M6Txi3jM_jsSq2h_ZZvOfdbQBXJkprC4ub0-LFcqr3u2vbROmFCa-PVWh02J_DxyzuWVsMGreQhWWVeSqRA8g4zteYJUgKvp3nhsgQJDlqwSvj1FjmSFYl4Eelv6i-fFpoTGTr6i5l6PHAImceajfmz6wkCWb4rPidPW11XwsNqKTz7n4jkitaeXxkwgRKPCr5TCTtQzJvpQ0arhuJddrphjRpukTA1mtRWajTA69hA0Oe78kmfh4JwNH1vXU7DH_tbDNyv3UsyQ6-poH_VqyV6P7I8TvsEqUoFaZzct1D126UNaG-6obcGlfDP8lpg",
  "client_id": "2025-03-12T20:12:18Z"
}