What it does: You paste scopes. It points to the parts that are too broad (write/admin/wildcards/offline), suggests safer alternatives, and gives you a minimal set to try first.

Scope Bouncer

Paste scopes/permissions. We’ll flag overreach, suggest safer options, and propose a minimal set you can copy.

0 scopes • 0 pts
Risk: Low
Overreach flags: 0
Findings
    Minimal set (proposed)
    Why this matters (plain English)
    • Scopes are verbs. The more verbs, the bigger the blast radius.
    • Wildcards and “admin” punch holes you won’t find until it’s on fire.
    • Least-permission means: minimum verbs, minimum surface, minimum time.

    How to use

    1. Tap your intent (read / upload / send / payments).
    2. Paste scopes or permissions (one per line or commas).
    3. Hit Scan.
    4. Copy the Minimal set and try to run your workflow with it.
    5. If it fails for a legit reason, add the smallest extra scope needed. Repeat.

    Rules of thumb

    Outputs