Discovery

OAuth protected resource metadata for the MCP resource

RFC 9728 protected-resource metadata for {base}/mcp.

Names the /mcp-scoped authorization server and the MCP tool scopes. The same body is also served at the root well-known path for clients that ignore the 401's resource_metadata pointer.

get/.well-known/oauth-protected-resource/mcp

Response

Successful Response

object required

Changes

Changed in 1 of the 114 revisions of this API.1