Scopes

When creating a new client ID and secret it is necessary to list which scopes should be granted to those credentials. In addition, when requesting an access token using a client ID and secret, the list of scopes can be further reduced as compared to the list of scopes of the credentials. It is not possible for an access token to obtain a scope that has not been granted to the client ID and secret.

To reduce the scopes of a token, pass them space-separated in the scope field when requesting an access token, for example "scope": "payable:read settlement:read". Requesting a scope that was not granted to the credentials returns a 401 error.

List of currently supported scopes

ScopeDescription
payable:readAllows read-only access to payables, including snapshots of payables
payable-attachment:readAllows retrieving documentary evidence (attachments) of payables
settlement:readAllows read-only access to settlements
bank-fee:readAllows read-only access to bank fees
wallet-load:readAllows read-only access to wallet loads
wallet-summary:readAllows retrieving the summary of the wallet (balances)
user:readAllows retrieving company users (members)
supplier:readAllows retrieving the list of suppliers
cost-center:readAllows read-only access to cost centers
cost-center:manageAllows creating, updating and deleting cost centers
expense-category:readAllows read-only access to expense categories
analytical-field:readAllows retrieving analytical fields and values

Experimental scopes

These scopes give access to experimental endpoints, which may change. Request access to experimental features from your CSM or by email at [email protected], then create credentials with the experimental scopes you need.

ScopeDescription
experimental:accounting-export:readAllows generating and retrieving file-based purchase and bank journals, their templates and export status
experimental:accounting-export:writeUsed by the Spendesk MCP server; no REST endpoint requires it
experimental:accounting:updateAllows updating the accounting fields of payables, marking them as ready and updating bookkeeping states
experimental:chart-of-accounts:readAllows retrieving accounts and searching creditor account assignments
experimental:chart-of-accounts:writeAllows creating, updating, syncing and deleting accounts and assigning creditors to them
experimental:external-reference:readAllows retrieving external references
experimental:external-reference:writeAllows creating and updating external references
experimental:payable-search:readAllows searching payables
experimental:payable-attachment:writeAllows uploading attachments to payables
experimental:invoice:readAllows listing, summarising and retrieving invoices
experimental:intake:readAllows listing and retrieving intakes
experimental:intake:writeAllows creating intakes and uploading their files
experimental:purchase-order:readAllows retrieving purchase orders and their documents
experimental:purchase-order:writeAllows creating, cancelling and closing purchase orders
experimental:supplier:manageAllows creating and updating suppliers and their status
experimental:card:readAllows retrieving cards, their order and their blocking history
experimental:transaction:readAllows retrieving card transactions
experimental:request:readAllows retrieving requests
experimental:company:readAllows listing the companies of an organisation (requires an organisation-level token)
experimental:analytical-field-v2:readAllows retrieving analytical fields and values (v2)
experimental:analytical-field-v2:writeAllows creating, updating and deleting analytical fields and values (v2)
experimental:expense-category-v2:readAllows retrieving expense category fields and categories (v2)
experimental:expense-category-v2:writeAllows creating, updating and deleting expense category fields and categories (v2)
experimental:webhooks:readAllows retrieving configured web-hooks
experimental:webhooks:writeAllows configuring web-hooks