Authentication

Authentication

A curated index of services, tooling, and open source solutions for API authentication, authorization, identity management, and secrets management. This collection covers identity providers, SSO platforms, privileged access management, MFA, open source identity servers, and authentication standards including OAuth 2.0, OpenID Connect, SAML 2.0, FIDO2/WebAuthn, and SCIM.

handymanServices & Tools

handyman Amazon Cognito code Repo link APIs.io
handyman Auth0 code Repo link APIs.io
handyman Authelia code Repo link APIs.io
handyman Authentik code Repo link APIs.io
handyman Casdoor code Repo link APIs.io
handyman Cerbos code Repo link APIs.io
handyman CyberArk code Repo link APIs.io
handyman Duo Security code Repo link APIs.io
handyman ForgeRock code Repo link APIs.io
handyman HashiCorp Vault code Repo link APIs.io
handyman Keycloak code Repo link APIs.io
handyman Logto code Repo link APIs.io
handyman Microsoft Entra ID code Repo link APIs.io
handyman Okta code Repo link APIs.io
handyman OneLogin code Repo link APIs.io
handyman Ory code Repo link APIs.io
handyman Ping Identity code Repo link APIs.io
handyman SailPoint code Repo link APIs.io
handyman SuperTokens code Repo link APIs.io
handyman WorkOS code Repo link APIs.io
handyman Zitadel code Repo link APIs.io

extensionCommon Features

extensionOAuth 2.0 Protocol Coverage

Comprehensive coverage of OAuth 2.0 authorization framework implementations from cloud providers, open source projects, and commercial platforms.

extensionOpenID Connect Providers

Index of OpenID Connect certified identity providers and implementations spanning cloud, on-premises, and self-hosted deployments.

extensionMulti-Factor Authentication

Coverage of MFA solutions including TOTP, SMS, push notification, WebAuthn/FIDO2, and hardware token implementations.

extensionSelf-Hosted Identity Solutions

Open source identity servers that can be self-hosted including Keycloak, Authelia, Authentik, Zitadel, and Casdoor.

extensionEnterprise Identity Providers

Commercial enterprise IAM platforms including Okta, Auth0, ForgeRock, Ping Identity, and Microsoft Entra ID.

extensionSecrets and PAM

Privileged access management and secrets management tools including HashiCorp Vault and CyberArk for secure credential storage.

task_altUse Cases

task_altIdentity Provider Selection

Compare authentication platforms across self-hosted, cloud, and enterprise tiers to select the right identity provider.

task_altSSO Implementation

Find SSO platforms and libraries for implementing single sign-on across applications and services.

task_altAPI Security Research

Research authentication standards, security patterns, and best practices for securing REST, GraphQL, and gRPC APIs.

task_altZero Trust Architecture

Discover identity verification services for zero trust network access and continuous authentication architectures.

integration_instructionsIntegrations

integration_instructionsOAuth 2.0 Standard

The foundational authorization framework implemented by every provider in this collection.

integration_instructionsOpenID Connect Standard

Identity layer on top of OAuth 2.0 providing standardized user info, ID tokens, and discovery endpoints.

integration_instructionsSAML 2.0 Standard

XML-based authentication standard widely used for enterprise SSO and federation scenarios.

integration_instructionsSCIM 2.0 Standard

System for Cross-domain Identity Management for automated user provisioning and deprovisioning.

integration_instructionsFIDO2/WebAuthn Standard

Web Authentication standard for passwordless and hardware-backed authentication.

articleLatest API Stories

Most recent 25 stories pulled from across the API Evangelist network blog feeds.

article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article
article

How to Make Your APIs Agent-Ready With MCP Bridge

article
article
article