Hi folks.  Swagger-UI provides an "Authorize" button at the top of the 
page, and the resulting dialog requires at least 1 scope be enabled before 
the UI will attempt to get a token (at least with the 
application/client_credentials flow and the recently-merged password flow; 
I haven't tried other flows).  Yet if there are endpoints that require 
authentication but no particular scope (i.e. they are open to any 
authenticated client regardless of the token scope) then it becomes 
necessary to authorize via the little icon that appears next to actual 
endpoint further down in the UI -- the "Authorize" button won't let me get 
empty tokens.  It seems reasonable to me that I might want to request an 
empty token via the "Authorize" button at the top of the UI.  Does this 
seem reasonable to others, and this should be created as an issue, or am I 
missing something?

Ron

-- 
You received this message because you are subscribed to the Google Groups 
"Swagger" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to