# Additional user attribute selected by user

**URL:** <https://forum.keycloak.org/t/additional-user-attribute-selected-by-user/3492>\
**Category:** Getting advice\
**Created:** [June 25, 2020, 12:15pm UTC](https://forum.keycloak.org/t/additional-user-attribute-selected-by-user/3492 "2020-06-25T12:15:29Z")\
**Posts on this page:** 1\
**Page:** 1

<div class="post-metadata">

**Author:** ![glandais](https://yyz2.discourse-cdn.com/free1/user_avatar/forum.keycloak.org/glandais/32/1056_2.png) [@glandais](https://forum.keycloak.org/u/glandais)\
**Post date:** [June 25, 2020, 12:15pm UTC](https://forum.keycloak.org/t/additional-user-attribute-selected-by-user/3492/1 "2020-06-25T12:15:29Z")

</div>

Hi,

Let’s say we have an application where a user can be linked to multiple companies.  
We also have partners able to use an API on the behalf of the user. A partner stores access/refresh tokens and make calls using a JWT bearer token.

When the user authorize the partner to access his data, we want to limit the grant to a single company.  
How would you do with Keycloak this kind of selection ?

Regards  
Gabriel
