## graph.ClientSecret


A client secret authenticates an Entra app registration, which needs the `Mail.Send` application permission.


Usage

``` python
graph.ClientSecret(
    tenant_id,
    client_id,
    client_secret,
)
```


Epistole requests the scope `https://graph.microsoft.com/.default`, which grants the permissions an administrator consented to for the app. Inside [smtp.OAuth](smtp.OAuth.md#epistole.smtp.OAuth), it requests `https://outlook.office365.com/.default` instead. See ADR-0011.


## Attributes


`tenant_id: str`  
The directory the app is registered in, as a GUID or a domain.

`client_id: str`  
The app's application ID.

`client_secret: str`  
The secret. It is not in the `repr`, so no traceback or log line holds it.
