{"app_name":"Counsellor","domain":"counsellor.education","contact":"help@counsellor.education","google":{"client_id":"","scopes":["openid","email","profile"],"redirect_uri":"https://counsellor.education/auth/oauth/google/callback","reads_student_data_in_your_tenant":false,"how_to_allow":["Admin console → Security → Access and data control → API controls → Manage third-party app access.","Choose 'Configure new app' → 'OAuth App Name Or Client ID', then search for the client ID above.","Select the organisational units that should be allowed and set access to 'Trusted' — or 'Limited', which is enough for the scopes we request."]},"apple":{"services_id":""},"if_you_would_rather_not":"Students can sign in with a personal email address instead — no school account and no admin change required."}