Cytora Identity (Auth0 OIDC)

The OAuth 2.0 / OpenID Connect authorization server that fronts every Cytora integration, running on an Auth0 EU tenant (cytora-prod.eu.auth0.com). This is the only Cytora surface that answers anonymously with real machine-readable data: OpenID Connect Discovery, RFC 8414 authorization server metadata and JWKS all return 200. It advertises client_credentials for machine-to-machine partner integrations, authorization_code with PKCE (S256) for the Risk Console, token exchange, JWT bearer and device code grants, private_key_jwt client authentication and DPoP (ES256). Only stock OIDC identity scopes are advertised; product scopes are not published.

API entry from apis.yml

apis.yml Raw ↑
name: Cytora Identity (Auth0 OIDC)
description: 'The OAuth 2.0 / OpenID Connect authorization server that fronts every Cytora integration,
  running on an Auth0 EU tenant (cytora-prod.eu.auth0.com). This is the only Cytora surface that answers
  anonymously with real machine-readable data: OpenID Connect Discovery, RFC 8414 authorization server
  metadata and JWKS all return 200. It advertises client_credentials for machine-to-machine partner integrations,
  authorization_code with PKCE (S256) for the Risk Console, token exchange, JWT bearer and device code
  grants, private_key_jwt client authentication and DPoP (ES256). Only stock OIDC identity scopes are
  advertised; product scopes are not published.'
humanURL: https://auth.cytora.com/.well-known/openid-configuration
baseURL: https://auth.cytora.com
tags:
- OAuth
- OpenID Connect
- Identity
properties:
- type: Authentication
  url: authentication/cytora-authentication.yml
- type: OAuthScopes
  url: scopes/cytora-scopes.yml
- type: WellKnown
  url: well-known/cytora-well-known.yml
- type: OpenIDConnect
  url: https://auth.cytora.com/.well-known/openid-configuration