# scope_missing

Source: https://capacms.com/docs/errors/scope_missing

403 permission. The key is valid but lacks the scope this route needs.

| HTTP status | `type`       | Surfaces |
| ----------- | ------------ | -------- |
| 403         | `permission` | REST     |

## What it means

The key is valid but lacks the scope this route needs.

| When                                                 | What the `hint` tells you                    |
| ---------------------------------------------------- | -------------------------------------------- |
| the key does not hold `instance:read` for this model | the scope to add, unscoped or for this model |

## What to do

The hint names the scope. Use a key that holds it, or ask for one.

## The response

HTTP 403:

```json
{
  "error": {
    "type": "permission",
    "code": "scope_missing",
    "message": "This key cannot do instance:read.",
    "hint": "This key needs instance:read, or instance:read:00000000-0000-4000-8000-000000000010 for authors.",
    "docs": "https://docs.capacms.com/errors/scope_missing"
  },
  "meta": {
    "version": "2026-10-01",
    "contract": 1,
    "requestId": "req_0f3c…"
  }
}
```

## See also

* [Keys and scopes](https://capacms.com/docs/api/authentication)
