read:tables |
Read table metadata, columns, and rows. |
The user can limit this to selected tables |
write:tables |
Modify rows, columns, and metadata of granted tables; create new tables (newly-created tables are auto-added to the grant). |
The user can limit this to selected tables |
read:boards |
Read board metadata, lanes, fields, cards, and comments. |
The user can limit this to selected boards |
write:boards |
Modify lanes, fields, cards, labels, comments, and metadata of granted boards; create new boards (newly-created boards are auto-added to the grant). |
The user can limit this to selected boards |
read:folders |
Read folder structure for granted folders. Does not cascade to tables inside the folder — apps need read:tables for those. |
The user can limit this to selected folders |
write:folders |
Manage granted folders. |
The user can limit this to selected folders |
read:search_histories |
Read granted saved searches. |
The user can limit this to selected saved searches |
write:search_histories |
Manage granted saved searches. |
The user can limit this to selected saved searches |
read:profile |
Read your basic profile information (name, email, avatar). |
No extra picker or approval |
read:people |
Read person profiles in your graph. |
The user must choose at least one connected account; Graph One must approve this for third-party apps |
read:organisations |
Read organisation profiles in your reach. |
The user must choose at least one connected account |
read:team-people |
Read team-scoped people endpoints for the customer-team domains you grant access to. |
The user can limit this to selected work domains; Graph One must approve this for third-party apps |
read:team-organisations |
Read team-scoped organisation endpoints for the customer-team domains you grant access to. |
The user can limit this to selected work domains; Graph One must approve this for third-party apps |
read:connection-strength |
Read connection-strength data between you and others. |
The user must choose at least one connected account; Graph One must approve this for third-party apps |
write:connection-strength |
Override connection-strength values in your graph. |
The user must choose at least one connected account; Graph One must approve this for third-party apps |
read:feed |
Read your activity feed. |
No extra picker or approval |
read:sync |
Read sync state (which inboxes/calendars are connected and their last-synced timestamps) for the connected accounts you select. |
The user must choose at least one connected account |
offline_access |
Issue a long-lived refresh token so the app can keep accessing your data when you are not signed in. |
No extra picker or approval |
execute:search |
Run people and organisation search queries. |
No extra picker or approval |
execute:semantic-search |
Run AI-powered natural-language search queries (consumes LLM credits from your account). |
Graph One must approve this for third-party apps |
read:investors |
Look up investor profiles and portfolio data. |
No extra picker or approval |
read:podcasts |
Look up podcast feeds and known-people on episodes. |
No extra picker or approval |
write:linkedin.profiles |
Write LinkedIn profile observations into your graph. |
Graph One must approve this for third-party apps |
write:linkedin.positions |
Write LinkedIn role/position observations into your graph. |
Graph One must approve this for third-party apps |
write:linkedin.educations |
Write LinkedIn education observations into your graph. |
Graph One must approve this for third-party apps |
write:linkedin.connections |
Write LinkedIn 1st-degree connection observations into your graph. |
Graph One must approve this for third-party apps |
write:linkedin.messages |
Write LinkedIn message (DM) observations into your graph. |
Graph One must approve this for third-party apps |
write:linkedin.reachability |
Write LinkedIn 2nd/3rd-degree reachability observations into your graph. |
Graph One must approve this for third-party apps |