isTrusted()) { throw OAuthServerException::invalidScope($scopes[0]->getIdentifier()); } return $scopes; } }