Ramp for FE- Ramp Security Requirements

Modified on Wed, May 6 at 12:32 PM

Overview

  • To connect Ramp for FE with Ramp, the user authorizing the connection must have the correct Ramp permissions. 
  • Ramp for FE uses Ramp API permissions, also called scopes, to read and update the information needed for syncing transactions, maintaining accounting data, and updating sync status across Ramp objects.

Who can authorize the connection?

  • Only users with the Admin or Business Owner role in Ramp can authorize third-party applications. 
  • If a user does not have the required Ramp role and tries to authorize Ramp for FE, they may see the following error: 
"Business not authorized to use this application"


This means the user does not have sufficient permissions in Ramp to approve the connection.


Required Ramp permissions

  • Ramp for FE requires the following scopes to support syncing and accounting-related activity: 


ScopeWhat it allows Ramp for FE to do
accounting:readRead accounting settings and accounting-related data
accounting:writeUpdate accounting-related data
transactions:readRead transaction information
bills:readRead bill information
reimbursements:readRead reimbursement information
locations:readRead location data
locations:writeUpdate location data
departments:readRead department data
departments:writeUpdate department data
receipts:readRead receipt information
entities:readRead entity information
business:readRead business-level information
vendors:readRead vendor information
vendors:writeUpdate vendor information
users:readRead user information


These scopes are required so Ramp for FE can sync transactions, maintain accounting information, and update the sync status of Ramp objects.


Admin consent is required 

  • Ramp requires admin consent before a third-party application can be authorized. This consent must be provided by a Ramp user with the appropriate role, such as Admin or Owner.


Important Notes

  • The permissions listed above are the minimum Ramp permissions required for Ramp for FE. Your organization may require additional permissions depending on your Ramp setup, internal approval process, or the Ramp modules your organization uses.


Reference:  https://docs.ramp.com/developer-api/v1/authorization




Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article