Hi Team,
We are currently redirecting users to Lunar using the following authorization request scope query value in the redirect:
scope=offline PSP_AI
e.g. URL: https://auth.openbanking.prod.lunar.app/oauth2/auth?response_type=code&client_id=dummy-client-id&redirect_uri={{callback}}&scope=offline+PSP_AI&state=871a57a1-04d1-4f1e-bd31-9dfa204cb357
We have noticed that the consent screen presented to the PSU includes both:
Access your Lunar accounts
Access your transactions
For some of our use cases, we only require account details and/or balances and do not need access to transaction information.
Could you please confirm whether Lunar supports more granular AIS consent scopes or permissions that would allow us to request:
Account details only
Balances only
Transactions only
instead of always requesting access to both accounts and transactions?
If such functionality is supported, could you share the expected scopes or authorization parameters that should be used in the authorization URL?
Thank you for your assistance.
Kind regards,
Alexandra Ionela Huzum
Lead Product Manager-Technical,
Mastercard Open Finance
Hi Team,
We are currently redirecting users to Lunar using the following authorization request scope query value in the redirect:
scope=offline PSP_AI
e.g. URL: https://auth.openbanking.prod.lunar.app/oauth2/auth?response_type=code&client_id=dummy-client-id&redirect_uri={{callback}}&scope=offline+PSP_AI&state=871a57a1-04d1-4f1e-bd31-9dfa204cb357
We have noticed that the consent screen presented to the PSU includes both:
Access your Lunar accounts
Access your transactions
For some of our use cases, we only require account details and/or balances and do not need access to transaction information.
Could you please confirm whether Lunar supports more granular AIS consent scopes or permissions that would allow us to request:
Account details only
Balances only
Transactions only
instead of always requesting access to both accounts and transactions?
If such functionality is supported, could you share the expected scopes or authorization parameters that should be used in the authorization URL?
Thank you for your assistance.
Kind regards,
Alexandra Ionela Huzum
Lead Product Manager-Technical,
Mastercard Open Finance