# Auth Tokens

Read and write the third-party credentials stored in your workspace, so you can find the
id of the credential a data connector should authenticate with, and store a new one
without leaving your integration. These endpoints are part of the `Preview` API version.
Reading requires an OAuth token with the `read_auth_tokens` scope; creating and updating
require the `write_auth_tokens` scope and an access token associated with a teammate.
You can create a `text` credential to send yourself, or an `oauth` credential whose
access token Intercom obtains and refreshes automatically via the client-credentials
grant. Only credentials with a `token_type` of `text` can be updated. No endpoint ever
returns a credential value, client secret, refresh configuration, or OAuth configuration.

 - [GET /auth_tokens](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/listauthtokens.md): Returns a paginated list of the workspace's stored third-party credentials. Use this to discover the id of a credential you want a data connector to authenticate with — that id is not otherwise availa
 - [POST /auth_tokens](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/createauthtoken.md): Stores a third-party credential in your workspace so a data connector can authenticate outbound requests with it. Set `token_type` to `text` (the default) to send the credential value as a request hea
 - [GET /auth_tokens/{id}](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/retrieveauthtoken.md): Returns the metadata for a single stored third-party credential. A credential that the list endpoint does not return is also not retrievable here, and responds with 404.
 - [PATCH /auth_tokens/{id}](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/updateauthtoken.md): Updates the metadata of a stored third-party credential. A field you omit keeps its current value. The credential value itself cannot be changed here and is never returned. The `domain` is read-only,
 - [Auth Token](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/auth_token.md): Schema: #/components/schemas/auth_token
 - [Create Auth Token Request](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/create_auth_token_request.md): Schema: #/components/schemas/create_auth_token_request
 - [OAuth Configuration](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/oauth_configuration.md): Schema: #/components/schemas/oauth_configuration
 - [Update Auth Token Request](https://developers.intercom.com/docs/references/preview/rest-api/api.intercom.io/auth-tokens/update_auth_token_request.md): Schema: #/components/schemas/update_auth_token_request
