L24 · OAUTH 2.0
Consent, then say no
Approve a narrow scope for a client, then deny consent on a second run.
Planned
Steps
Run the flow and approve a single scope.
What the server will check: An approved grant with that scope.
Run it again and deny consent.
What the server will check: An access_denied response for the same client.
When it opens
This lab is planned. It opens when these are in place:
- Lab setup and cleanup in your test tenant
- The demo client application
The server checks your test tenant's history for this attempt. You can review the events yourself in your tenant's Audit and Logs.