DataFlex
DataFlex
Get Ebay OAuth2 in a Desktop App
See more eBay Examples
Demonstrates how to get a Ebay OAuth2 access token from a desktop application or script.There are two ways of "minting" an OAuth2 access token.
- The authorization code grant flow (this example) (https://developer.ebay.com/api-docs/static/oauth-authorization-code-grant.html) This is where your app will be accessing another person's eBay account. It's an interactive process and requires the account owner's permission to get the access token the 1st time. After that, it can be refreshed indefinitely without user interaction.
- The client credentials grant flow (https://developer.ebay.com/api-docs/static/oauth-client-credentials-grant.html) This is where you access your own eBay account. It's non-interactive and you can do it in automated services where user-interaction is not possible.
Chilkat DataFlex Downloads
Use ChilkatAx-win32.pkg
Procedure Test
Boolean iSuccess
Handle hoOauth2
String sUrl
Integer iNumMsWaited
Handle hoSbJson
String sTemp1
Integer iTemp1
Boolean bTemp1
Move False To iSuccess
// To further clarify, see OAuth 2.0 Authorization Flow
Get Create (RefClass(cComChilkatOAuth2)) To hoOauth2
If (Not(IsComObjectCreated(hoOauth2))) Begin
Send CreateComObject of hoOauth2
End
// See the Ebay documentation about Access token types
// Also see the Ebay documentation about authorization code grant flow
// Given that Ebay only allows redirect URLs using SSL/TLS, your applicaton must use an intermediate public web server (your own)
// to receive and forward the redirect to localhost.
// See Using Your Web Server as an Intermediary for OAuth2 Redirect to localhost
//
// Ebay is unusual in that it wants the redirect URL indirectly.
// You need to provide the RuName (eBay Redirect URL name)
Set ComAppCallbackUrl Of hoOauth2 To "Chilkat_Softwar-ChilkatS-Chilka-wxoumqdu"
Set ComListenPort Of hoOauth2 To 3017
Set ComAuthorizationEndpoint Of hoOauth2 To "https://auth.sandbox.ebay.com/oauth2/authorize"
Set ComTokenEndpoint Of hoOauth2 To "https://api.sandbox.ebay.com/identity/v1/oauth2/token"
// Replace these with actual values.
Set ComClientId Of hoOauth2 To "EBAY_CLIENT_ID"
Set ComClientSecret Of hoOauth2 To "EBAY_CLIENT_SECRET"
Set ComUseBasicAuth Of hoOauth2 To True
Set ComCodeChallenge Of hoOauth2 To False
// The scope query param indicates the access to be provided by the token.
// Multiple scopes can be specified by separating each with a SPACE char.
// See the Ebay OAuth scopes documentation
Set ComScope Of hoOauth2 To "https://api.ebay.com/oauth/api_scope https://api.ebay.com/oauth/api_scope/buy.order.readonly https://api.ebay.com/oauth/api_scope/buy.guest.order https://api.ebay.com/oauth/api_scope/sell.marketing.readonly https://api.ebay.com/oauth/api_scope/sell.marketing https://api.ebay.com/oauth/api_scope/sell.inventory.readonly https://api.ebay.com/oauth/api_scope/sell.inventory https://api.ebay.com/oauth/api_scope/sell.account.readonly https://api.ebay.com/oauth/api_scope/sell.account https://api.ebay.com/oauth/api_scope/sell.fulfillment.readonly https://api.ebay.com/oauth/api_scope/sell.fulfillment https://api.ebay.com/oauth/api_scope/sell.analytics.readonly https://api.ebay.com/oauth/api_scope/sell.marketplace.insights.readonly https://api.ebay.com/oauth/api_scope/commerce.catalog.readonly https://api.ebay.com/oauth/api_scope/buy.shopping.cart https://api.ebay.com/oauth/api_scope/buy.offer.auction"
// Begin the OAuth2 three-legged flow. This returns a URL that should be loaded in a browser.
Get ComStartAuth Of hoOauth2 To sUrl
Get ComLastMethodSuccess Of hoOauth2 To bTemp1
If (bTemp1 <> True) Begin
Get ComLastErrorText Of hoOauth2 To sTemp1
Showln sTemp1
Procedure_Return
End
Showln "url = " sUrl
// Launch the default browser on the system and navigate to the url.
// The LaunchBrowser method was added in Chilkat v10.1.2.
Get ComLaunchBrowser Of hoOauth2 sUrl To iSuccess
If (iSuccess = False) Begin
Get ComLastErrorText Of hoOauth2 To sTemp1
Showln sTemp1
Procedure_Return
End
// Wait for the user to approve or deny authorization in the browser.
Move 0 To iNumMsWaited
While ((iNumMsWaited < 90000) And ((ComAuthFlowState(hoOauth2)) < 3))
Send ComSleepMs To hoOauth2 100
Move (iNumMsWaited + 100) To iNumMsWaited
Loop
// If the browser does not respond within the specified time, AuthFlowState will be:
//
// 1: Waiting for Redirect – The OAuth2 background thread is waiting for the browser's redirect request.
// 2: Waiting for Final Response – The thread is awaiting the final access token response.
// In either case, cancel the background task initiated by StartAuth.
Get ComAuthFlowState Of hoOauth2 To iTemp1
If (iTemp1 < 3) Begin
Get ComCancel Of hoOauth2 To iSuccess
Showln "No response from the browser!"
Procedure_Return
End
// Check AuthFlowState to determine if authorization was granted, denied, or failed:
//
// 3: Success – OAuth2 flow completed, the background thread exited, and the successful response is in AccessTokenResponse.
// 4: Access Denied – OAuth2 flow completed, the background thread exited, and the error response is in AccessTokenResponse.
// 5: Failure – OAuth2 flow failed before completion, the background thread exited, and error details are in FailureInfo.
Get ComAuthFlowState Of hoOauth2 To iTemp1
If (iTemp1 = 5) Begin
Showln "OAuth2 failed to complete."
Get ComFailureInfo Of hoOauth2 To sTemp1
Showln sTemp1
Procedure_Return
End
Get ComAuthFlowState Of hoOauth2 To iTemp1
If (iTemp1 = 4) Begin
Showln "OAuth2 authorization was denied."
Get ComAccessTokenResponse Of hoOauth2 To sTemp1
Showln sTemp1
Procedure_Return
End
Get ComAuthFlowState Of hoOauth2 To iTemp1
If (iTemp1 <> 3) Begin
Get ComAuthFlowState Of hoOauth2 To iTemp1
Showln "Unexpected AuthFlowState:" iTemp1
Procedure_Return
End
Showln "OAuth2 authorization granted!"
Get ComAccessToken Of hoOauth2 To sTemp1
Showln "Access Token = " sTemp1
// Save the full JSON access token response to a file.
Get Create (RefClass(cComChilkatStringBuilder)) To hoSbJson
If (Not(IsComObjectCreated(hoSbJson))) Begin
Send CreateComObject of hoSbJson
End
Get ComAccessTokenResponse Of hoOauth2 To sTemp1
Get ComAppend Of hoSbJson sTemp1 To iSuccess
Get ComWriteFile Of hoSbJson "qa_data/tokens/ebay-access-token.json" "utf-8" False To iSuccess
// The full JSON received looks like this:
// {
// "access_token": "v^1.1#i^1#p^3#f^0#I^3#r^0#t^H4sIAAA... 3+fBIAAA==",
// "expires_in": 7200,
// "refresh_token": "v^1.1#i^1#f^0#p^3#r^1#I^3#t^Ul4xMF8wOkIxQzAzQjg1ND ... fMSNFXjEyODQ=",
// "refresh_token_expires_in": 47304000,
// "token_type": "User Access Token"
// }
End_Procedure