Standard scope and AuthN context values

OAuth scopes and SAML AuthnContext values define the level of access an application is requesting on behalf of a user. These parameters determine what user data the application can access or what actions it can perform. They also represent the authentication context, which indicates how the user will authenticate and the level of assurance required. This helps enforce security, protect user data, and ensure trust in the authentication process.

Standard scope and AuthN context values

Authentication

Context valueDescription
mfaMulti-factor authenticationDetails
http://idmanagement.govNIST IAL2/AAL2Details

Identity verification

Context valueDescription
kba_replacementIdentity proofing requiring one piece of evidenceDetails
fortified_identityIdentity proofing requiring two pieces of evidenceDetails
http://idmanagement.govNIST IAL2/AAL2Details

Attributes exchange and community verification

Context valueDescription
militaryMembers and dependents of the uniformed servicesDetails
responderActive and retired members of the first responder communityDetails
studentMembers who are actively enrolled in an accredited public or private university or collegeDetails
teacherMembers of the teaching communityDetails
governmentMembers employed by federal, state, or local governmentsDetails
employeeMembers who are employed by partnering companiesDetails
hospital_employeeMembers who are employed by hospitals and healthcare systemsDetails
alumniMembers who have earned a degree from an accredited public or private university or collegeDetails
nurseMembers of the nursing communityDetails
medicalMembers who are part of the medical professional communityDetails
military_canadaMembers who are part of the Canadian militaryDetails
responder_canadaMembers of the Canadian first responder communityDetails
student_canadaMembers who are actively enrolled in an accredited public or private Canadian university or collegeDetails
teacher_canadaMembers of the Canadian teaching communityDetails
government_canadaMembers employed by the Canadian governmentDetails
nurse_canadaMembers of the Canadian nursing communityDetails
doctor_canadaMembers who are part of the Canadian doctor communityDetails
alumni_canadaMembers who have earned a degree from an accredited Canadian public or private university or collegeDetails
http://idmanagement.govVerify a provider’s identity and meet DEA requirements for Electronically Prescribed Controlled SubstancesDetails
http://idmanagement.govVerify a provider’s identity to enable digital signature electronic prescriptionsDetails