Bigtable OAuth scopes

OAuth scopes let Google Cloud services such as Compute Engine and Dataflow authenticate and connect to Bigtable. Configuring appropriate scopes grants applications the specific data and administrative access that they require.

To connect a resource, such as a Compute Engine virtual machine instance, to Bigtable, specify the appropriate OAuth scopes and enable access to Bigtable when you create the resource. Choose the most restrictive scopes that support your application's requirements, because you can't change the scopes after you create the resource.

Bigtable supports the following scopes:

Scope URI for gcloud Description
https://www.googleapis.com/auth/bigtable.admin Alias for both bigtable.admin.instance and bigtable.admin.table.
https://www.googleapis.com/auth/bigtable.admin.instance Enables creation and management of Bigtable instances and clusters.
https://www.googleapis.com/auth/bigtable.admin.table Enables creation and management of Bigtable tables and their column families.
https://www.googleapis.com/auth/bigtable.data Enables read and write access to data stored in Bigtable tables.
https://www.googleapis.com/auth/bigtable.data.readonly Enables read-only access to data stored in Bigtable tables.
https://www.googleapis.com/auth/cloud-bigtable.data Enables read and write access to data stored in Bigtable tables.
https://www.googleapis.com/auth/cloud-bigtable.data.readonly Enables read-only access to data stored in Bigtable tables.
https://www.googleapis.com/auth/cloud-platform Enables full access to all Google Cloud products, including Bigtable.
https://www.googleapis.com/auth/cloud-platform.readonly Enables read-only access to all Google Cloud products, including Bigtable.