How do you implement MCP step-up authorization without losing scopes or retrying forever?

Instruction: Walk through an insufficient-scope response, consent, and the retry boundary.

Context: The assistant can read records, but a newly requested update requires additional OAuth scope.

Updated

Official answer available

Read the opening below, then unlock the full answer and practical guidance.

I’d distinguish an invalid token from a valid token with insufficient scope...

Your preparation path

Work through these questions in order. Read the answer aloud, then explain it in your own words.

Related Questions