---
title: "Discover OAuth endpoints from provider metadata"
method: POST
path: "/api/oauth-apps/discover"
tags: ["Script Connections"]
---

# Discover OAuth endpoints from provider metadata

`POST /api/oauth-apps/discover`

## Request body

- object
  - `url` string, uri, required

## Response `200`

Discovered OAuth metadata

- object
  - `authorizeUrl` string, required
  - `tokenUrl` string, required
  - `scopes` string[], required
  - `sourceUrl` string, required

## Other responses

- `400` — Discovery failed
- `403` — Only the lead agent can manage script connections

## Changes

- **2026-08-07** `06cac6a7c5bc` — 3 info
  - added the media type `application/json` for the response with the status `200`
  - added the media type `application/json` for the response with the status `400`
  - added the media type `application/json` for the response with the status `403`
- **2026-07-09** `4f56890cc278` — 1 info
  - endpoint added
- **2026-07-02** `0c910612f9ac` — 1 breaking
  - api path removed without deprecation

[Change history](https://skmtc.dev/desplega-ai/apis/agent-swarm-api/changes/api/oauth-apps/discover/post.md)

---

[API](https://skmtc.dev/desplega-ai/apis/agent-swarm-api.md) · [All operations](https://skmtc.dev/desplega-ai/apis/agent-swarm-api/llms.txt) · [OpenAPI document](https://skmtc-service-production.skmtc.workers.dev/v1/apis/desplega-ai/agent-swarm-api/revisions/e0acd2155cad/schema)
