Descope Auth API

The Auth API from Descope — 52 operation(s) for auth.

Operations 58

GET /v1/auth/saml/idp/initiate SAML IDP Initiate Redirect #
POST /v1/auth/saml/idp/initiate SAML IDP Initiate POST #
GET /v1/auth/saml/idp/sso SAML IDP Redirect Binding #
POST /v1/auth/saml/idp/sso SAML IDP POST Binding #
POST /v1/auth/saml/idp/sso-finish SAML IDP Finish #
GET /v1/auth/wsfed/idp/initiate WS-Fed IDP Initiate #
POST /v1/auth/wsfed/idp/initiate WS-Fed IDP Initiate #
GET /v1/auth/wsfed/idp/sso WS-Fed IDP Passive #
POST /v1/auth/wsfed/idp/sso WS-Fed IDP Passive #
POST /v1/auth/wsfed/idp/sso-finish WS-Fed IDP Finish #
POST /v1/auth/accesskey/exchange Exchange Key #
POST /v1/auth/refresh Refresh Session #
POST /v1/auth/try-refresh Try Refresh Session #
GET /v1/auth/me My Details #
GET /v1/auth/me/history Get Session History #
POST /v1/auth/tenant/select Select an active tenant #
GET /v1/auth/idp/sso/logout Logout #
POST /v1/auth/idp/sso/logout Logout #
POST /v1/auth/logout Sign-Out #
POST /v1/auth/logoutall Sign-Out All Active Sessions #
POST /v1/auth/validate Validate Session #
POST /v1/auth/notp/{provider}/update Update User NOTP #
POST /v1/auth/oauth/authorize Sign-Up / Sign-In #
POST /v1/auth/oauth/authorize/signin Create Redirect URI for Sign-In Request #
POST /v1/auth/oauth/authorize/signup Create Redirect URI for Sign-Up Request #
POST /v1/auth/oauth/authorize/update Creating OAuth redirect URI for update user request #
POST /v1/auth/oauth/native/start Starts a full OAuth flow using native APIs #
POST /v1/auth/oauth/exchange Exchange Code #
POST /v1/auth/oauth/native/finish Finishes a full OAuth flow using native APIs #
POST /v1/auth/onetap/idtoken/exchange Exchanges one tap id token for a JWT #
POST /v1/auth/onetap/idtoken/verify Verifies one tap id token for a code #
GET /v1/auth/onetap/clientid/{provider} Get Google One Tap Client ID Configuration #
POST /v1/auth/password/signup Sign-Up User #
POST /v1/auth/password/signin Sign-In User #
POST /v1/auth/password/replace Replace Password #
POST /v1/auth/password/update Update Password #
GET /v1/auth/password/policy Get Password Policy #
POST /v1/auth/recovery-codes Generate recovery codes for a user #
POST /v1/auth/recovery-codes/signin Sign in a user using a recovery code #
POST /v1/auth/saml/authorize Creating SAML redirect URI #
POST /v1/auth/saml/exchange Finalize SAML authentication #
GET /v1/auth/saml/idp/metadata IDP Metadata URL for external SAML services #
POST /v1/auth/security-questions/setup Sets up security questions for a user #
GET /v1/auth/security-questions/verify Get the security questions for a user to verify #
POST /v1/auth/security-questions/verify Verifies the security questions for a user #
POST /v1/auth/sso/authorize Start SSO #
POST /v1/auth/sso/exchange Exchange SSO Code #
POST /v1/auth/totp/signup Sign-Up #
POST /v1/auth/totp/verify Sign-In / Verify #
POST /v1/auth/totp/update Add / Update Key #
POST /v1/auth/webauthn/signup/start User Sign-Up #
POST /v1/auth/webauthn/signup/finish Finalize Sign-Up #
POST /v1/auth/webauthn/signin/start User Sign-In #
POST /v1/auth/webauthn/signin/finish Finalize Sign-In #
POST /v1/auth/webauthn/signup-in/start User Sign-In with Auto Sign-Up #
POST /v1/auth/webauthn/update/start Add WebAuthn Device #
POST /v1/auth/webauthn/update/finish Finalize Add WebAuthn #
GET /v1/auth/wsfed/idp/metadata WS-Fed IDP Metadata #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/descope-auth-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

descope-auth-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Descope Auth API
  description: Descope API
  contact:
    name: Descope
    url: https://descope.com
    email: support@descope.com
  version: 0.0.1
servers:
- url: https://api.descope.com
  description: Descope Production
- url: '{customUrl}'
  description: Custom server URL
  variables:
    customUrl:
      default: https://api.descope.com
      description: Your Descope API base URL
security:
- Descope Project ID: []
  Descope Project ID:Refresh JWT: []
  Descope Project ID:Session JWT: []
  Descope Project ID and Management Key: []
  Descope Project ID:Access Key: []
tags:


# --- truncated at 32 KB (102 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/descope/refs/heads/main/openapi/descope-auth-api-openapi.yml