# { "reason": "Invalid authorization code", "error": "invalid\_grant" }

**URL:** <https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835>\
**Category:** Zoom Apps\
**Created:** [April 23, 2025, 4:21pm UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835 "2025-04-23T16:21:36Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![Joao1](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/joao1/32/68714_2.png) [@Joao1](https://devforum.zoom.us/u/Joao1)\
**Post date:** [April 23, 2025, 4:21pm UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/1 "2025-04-23T16:21:36Z")

</div>

**Zoom Apps Configuration**  
I’m working on an app for Zoom that uses the Zoom SDK. The app is in React.js.

**Description**  
I’ve updated the domain of the app URL and updated the domain in all the places it’s requested. In the app that uses the Zoom SDK, I’m able to get the code and send it to the BE, but I get the following error:

{“reason”: “Invalid authorization code”, “error”: “invalid\_grant” }

from the endpoint:

[https://zoom.us/oauth/token?code=2bJR7MRv61TLpWu8pLIQKaLlaGMqPBDWg&grant\_type=authorization\_code](https://zoom.us/oauth/token?code=2bJR7MRv61TLpWu8pLIQKaLlaGMqPBDWg&grant_type=authorization_code)

- headers of authentication with the Basic …

Here’s an example.

Using the code returned by the browser when using the local “Copy Authorization URL to Share” test, the endpoint works perfectly.

I have another app that we didn’t make any changes to and the same issue occurs.

I have checked the client\_id, secret and redirect URL, scopes and everything is correct.

I added the app to Zoom using the marketplace and had no issues.

Can you give me some feedback on why?

---

<div class="post-metadata">

**Author:** ![elisa.zoom](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/elisa.zoom/32/47836_2.png) [@elisa.zoom](https://devforum.zoom.us/u/elisa.zoom)\
**Post date:** [April 25, 2025, 12:38pm UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/2 "2025-04-25T12:38:19Z")

</div>

hi @Joao1  
Thanks for reaching out to us and welcome to the Zoom Developer Forum.  
Are you still facing this issue?  
Can you please pass the redirect uri in your request and try again?

```auto
POST https://zoom.us/oauth/token?grant_type=authorization_code&code=Wk9PTV9BVVRIT1JJWkFUSU9OX0NPREU&redirect_uri=https://example.com

```

---

<div class="post-metadata">

**Author:** ![Joao1](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/joao1/32/68714_2.png) [@Joao1](https://devforum.zoom.us/u/Joao1)\
**Post date:** [April 28, 2025, 8:42am UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/3 "2025-04-28T08:42:49Z")

</div>

Hello @elisa.zoom  
Yes, we still having the issue.

In my configuration, the rediect\_uri is for example: `https://test.com/` the sdk return the redirect\_uri as `https://test.com/welcome`. And even when i change in the configuration still having the error.  
I don’t have use strick mode for redirect urls or subdomain check.

From my tests the error persist when i add the redirect\_uri.  
Example:  
`POST https://zoom.us/oauth/token?code=1n0yoAHNm7knEYjj5FNSc6QOh5bfW0Psw&grant_type=authorization_code&redirect_uri=https://test.com/welcome`

---

<div class="post-metadata">

**Author:** ![elisa.zoom](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/elisa.zoom/32/47836_2.png) [@elisa.zoom](https://devforum.zoom.us/u/elisa.zoom)\
**Post date:** [April 28, 2025, 2:08pm UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/4 "2025-04-28T14:08:08Z")

</div>

Can you try adding the path /welcome to your redirect\_uri, to make it match

---

<div class="post-metadata">

**Author:** ![Joao1](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/joao1/32/68714_2.png) [@Joao1](https://devforum.zoom.us/u/Joao1)\
**Post date:** [April 28, 2025, 2:19pm UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/5 "2025-04-28T14:19:39Z")

</div>

I already add that and receive the same error.

---

<div class="post-metadata">

**Author:** ![elisa.zoom](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/elisa.zoom/32/47836_2.png) [@elisa.zoom](https://devforum.zoom.us/u/elisa.zoom)\
**Post date:** [May 1, 2025, 4:46pm UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/6 "2025-05-01T16:46:37Z")

</div>

Thanks @Joao1  
I am currently looking into this. Other developer reported the same thing and I’m waiting to hear back from our team

> [@Zoom Meeting SDK Authorization code issue](https://devforum.zoom.us/t/zoom-meeting-sdk-authorization-code-issue/131488/4):
>
> @elisa.zoom, Can you help me with this.

---

<div class="post-metadata">

**Author:** ![Joao1](https://sea2.discourse-cdn.com/flex016/user_avatar/devforum.zoom.us/joao1/32/68714_2.png) [@Joao1](https://devforum.zoom.us/u/Joao1)\
**Post date:** [May 5, 2025, 8:16am UTC](https://devforum.zoom.us/t/reason-invalid-authorization-code-error-invalid-grant/131835/7 "2025-05-05T08:16:09Z")

</div>

Please @elisa.zoom let me know when you have more information because this blocks us.
