# `scopes.list` Scope registry: TR labels, sensitivity and who may hold each scope (any token / developer tokens / sessions only). - **method + path**: `GET /v1/scopes` - **TR label**: Yetki listesi - **auth**: authenticated · scope gates: none beyond authentication - **agentPolicy**: `read` — GET, no store effects — every token kind calls it directly. - **effects**: none - **idempotency**: server — the platform derives the key - **wraps**: — (no command inside) Machine-readable body schema: [/schemas/routes/scopes.list.json](/schemas/routes/scopes.list.json). ## Body No request body.