5a91e670d8
If `allowed_groups` is not used with GitLab authentication, the *read_user* scope can be used instead of *api*.