---
title: "Oauth Authorize"
method: GET
path: "/v1/mcp-oauth/authorize"
tags: ["v1", "protected", "mcp-oauth-connect"]
---

# Oauth Authorize

`GET /v1/mcp-oauth/authorize`

Initiate MCP OAuth flow: discover AS, register client, redirect to auth page.

1. Look up the MCP instance's remote URL
2. Discover the authorization server (RFC 9728 → RFC 8414)
3. Dynamically register as an OAuth client (RFC 7591)
4. Generate PKCE pair and state
5. Redirect user to the authorization endpoint

## Query parameters

- `instance_id` string, uuid, required — MCP instance to connect
- `return_to` string — Frontend URL to redirect after OAuth completes

## Response `200`

Successful Response

- unknown

## Other responses

- `422` — Validation Error

## Changes

- **2026-04-29** `e1a530c0a2d5` — 1 info
  - endpoint added
- **2026-03-30** `e9c153221160` — 1 breaking
  - api path removed without deprecation

[Change history](https://skmtc.dev/agentarea/apis/agentarea-api/changes/v1/mcp-oauth/authorize/get.md)

---

[API](https://skmtc.dev/agentarea/apis/agentarea-api.md) · [All operations](https://skmtc.dev/agentarea/apis/agentarea-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/agentarea/agentarea-api/revisions/42240c74704e/schema)
