# Banklink authorization

To call the [Banklink API](https://developers.payout.tech/guides/banklink.html) on behalf of a user, get an access token from PayoutID with the [authorization code grant](https://developers.payout.tech/guides/payout-id-oauth.html#authorization-code-grant) and the Banklink scopes you need: `BLAISP`, `BLIBAN` or `BLPISP`.

1. **Redirect the user.** Send the user to [Authorize user](https://developers.payout.tech/api/payout-id.html#authorization_redirect_for_user) with the Banklink scopes in `scope`.
2. **The user approves.** The user logs in to PayoutID, or registers, and approves the requested access.
3. **Exchange the code.** Exchange the returned `code` for an access token at [Retrieve token](https://developers.payout.tech/api/payout-id.html#endpoint_to_retrieve_authorization_token).
4. **Call the Banklink API.** Send the access token in the `Authorization` header.

The user does not need a separate Banklink account: Banklink creates its record of the user on the first API call. With the client credentials grant, the Banklink user is your application itself.
