Connect Box to Auth0
1
Box Setup
- Sign up for a Box Developer account
- Set up an app using Box’s Custom Apps: Setup with OAuth 2.0 documentation
- Note your Client ID and Client Secret
2
Auth0 setup
- In the Auth0 Dashboard, go to Authentication > Social.
- Select Create Connection, then choose Box.
- Click Continue.
- In General:
- Enter the Client ID and Client Secret from your Box OAuth app.
- Under Attributes, select the scope(s) required for your application. These determine what permissions your application can request from Box, whether for authentication (such as accessing basic profile details) or for API access (such as connecting to the provider's APIs).
For a Dropbox and Google social connection, you must select Offline Access in the Auth0 Dashboard, enabling the client application to obtain an Auth0 refresh token. - Add any additional scopes your application requires in the Additional Scopes field.
- In Purpose, toggle on Use for Connected Accounts for Token Vault. This lets the connection retrieve and securely store access tokens for external APIs. Learn more in Connected Accounts for Token Vault.
- Click Create.
- After creation, you are redirected to the Applications page. Select the application(s) to enable this connection for.
Note: In a new Auth0 tenant, you can select the Default App. - Once you have created your Box social connection, test your connection to ensure the setup is working correctly before using it in your application.
This guide walks you through setting up the Box connection in Auth0. For an end-to-end example that shows how to set up your app to call third-party APIs on the user's behalf using a connection like this, read the Call Other's APIs on User's Behalf Quickstart.
Token Vault configuration example
To configure the Token Vault for your Box connection, you can use the following code snippet in your application:- JavaScript
- Python
Next steps
- To learn how to configure applications to access Token Vault, read Configure Token Vault.
- To learn how to get an access token to make a tool call, complete the Call other’s APIs on user’s behalf Quickstart.