scope — Scope
Location: payload · Format: string
A single space-delimited string listing the OAuth scopes granted to this token (e.g. "read:items write:items"). Note the format difference from vendor claims like Okta's scp or Cognito-style arrays, which carry the same information as a JSON array instead of a delimited string.
Defined in RFC 9068 §2.2.
Decode a JWT and inspect its scope claim in the TokenPrism debugger — free, entirely in your browser.