Permissions (scopes)

Every API key and every AI app connection carries permissions. A request without the needed permission gets 403. Give each key only what it needs.

ScopeDescriptionAvailable for API keysAvailable for AI apps (MCP)
contacts:readRead contactsyesyes
contacts:writeCreate and change contactsyesyes
contacts:deleteDelete contactsyesyes
messages:writeSend WhatsApp messages and approved templates to opted-in contactsyesyes
automations:readSee automationsyesyes
automations:writeRun automationsyesyes
automations:deleteDelete automationsyesyes
templates:readSee message templatesyesyes
templates:writeCreate WhatsApp template draftsyesyes
templates:submitSubmit templates to WhatsApp for approvalyesyes
templates:deleteDelete templatesyesyes
newsletters:readSee newslettersyesyes
newsletters:writeCreate and change newslettersyesyes
newsletters:scheduleSchedule newslettersyesyes
newsletters:deleteDelete newslettersyesyes
followups:readSee follow-upsyesyes
followups:writeCreate and change follow-upsyesyes
settings:readRead business profileyesyes
settings:writeChange business settingsyesyes
inbox:readRead inbox conversationsyesyes
webhooks:readyesno
webhooks:writeyesno
team:readSee team membersyesyes
stats:readSee statisticsyesyes
media:readSee media libraryyesyes
ai:chatGive tasks to SmartChat AI (newsletters, follow-ups, automations, landing page)yesyes
landing:readSee landing page and popupyesyes
landing:writeChange and publish landing page and popupyesyes
media:writeUpload images, videos and filesyesyes
media:deleteDelete mediayesyes
inbox:writeReply in the inbox and mark as readyesyes
ai:settingsChange AI replies, style and learned answersyesyes
knowledge:writeUpload and delete knowledge documentsyesyes
account:readSee plan, credits, invoices, domains and notificationsyesyes
account:writeChange team, domains, notifications, email senders and website widgetyesyes

Questions?

Email us at support@smartchat.marketing