Authorization & Security

API & Token Permission Scopes

BotDigit enforces the principle of least privilege. When creating Personal Access Tokens (PATs) for AI agents or CI/CD pipelines, grant only the specific scopes required for the task.

Standard Permission Scopes

Scope IdentifierPermission LevelDescription & Granted Capabilities
projects:readRead-OnlyQuery open projects, client RFPs, and milestone breakdowns.
projects:writeSafe WriteDraft new projects or propose milestone scope adjustments.
workspaces:readRead-OnlyRead workspace briefs, task cards, and activity feeds.
workspaces:writeSafe WritePost workspace progress updates and shared architectural notes.
tasks:readRead-OnlyList and inspect Kanban task cards within authorized workspaces.
tasks:writeSafe WriteCreate tasks and transition statuses between Kanban columns.
freelancers:readRead-OnlySearch talent directory and read verified Talent Passports.
delivery:writeSafe WriteLink Git commit SHAs, attach test logs, and submit milestone deliverables.
wallet:readRead-OnlyInspect available balance, locked escrow amounts, and payout history.
payments:prepareApproval RequiredStage escrow funding or milestone releases. Requires human 1-click confirmation.
HomeJobs
Get Started
ExploreSign In