Descope Mgmt API

The Mgmt API from Descope — 276 operation(s) for mgmt.

Operations 288

Showing the first 250 of 288. The full set is in the contract, and via get_provider_operations.

POST /v1/mgmt/inboundapp/app/{projectId}/register Register third party application #
POST /v1/mgmt/mcp/client/{projectId}/{mcpServerId}/register Register mcp server client #
GET /v1/mgmt/accesskey Load An Access Key #
POST /v1/mgmt/accesskey/import Import Access Key #
POST /v1/mgmt/accesskey/search Search Access Keys #
POST /v1/mgmt/accesskey/create Create Access Key #
POST /v1/mgmt/accesskey/update Update Access Key #
POST /v1/mgmt/accesskey/activate Activate Access Key #
POST /v1/mgmt/accesskey/deactivate Deactivate Access Key #
POST /v1/mgmt/accesskey/activate/batch Batch Activate Access Keys #
POST /v1/mgmt/accesskey/deactivate/batch Batch Deactivate Access Keys #
POST /v1/mgmt/accesskey/delete/batch Batch Delete Access Keys #
POST /v1/mgmt/accesskey/delete Delete Access Key #
POST /v1/mgmt/audit/search Search Audit #
POST /v1/mgmt/audit/event Create Audit Event #
POST /v1/mgmt/analytics/search Search Analytics #
GET /v1/mgmt/user Load User #
POST /v1/mgmt/user/create/test Create Test User #
GET /v1/mgmt/user/provider/token Get User Provider Token #
POST /v1/mgmt/users/load Load Users #
POST /v1/mgmt/user/search Search Users #
POST /v2/mgmt/user/search/test Search test Users #
POST /v2/mgmt/user/search Search Users #
POST /v1/mgmt/user/history Get User's Login History #
PATCH /v1/mgmt/user/patch/batch Patch Users Batch #
POST /v1/mgmt/user/create Create User #
POST /v1/mgmt/user/create/batch Batch Create Users #
POST /v1/mgmt/user/update Update User #
POST /v1/mgmt/user/update/recovery/email Update User Recovery Email #
POST /v1/mgmt/user/update/recovery/phone Update User Recovery Phone #
PATCH /v1/mgmt/user/patch Patch User #
POST /v1/mgmt/user/update/status Update User Status #
POST /v1/mgmt/user/update/impersonationConsent Update User Impersonation Consent #
POST /v1/mgmt/user/update/email Update User Email #
POST /v1/mgmt/user/update/loginid Update User Login ID #
POST /v1/mgmt/user/update/phone Update User Phone #
POST /v1/mgmt/user/update/name Update User Display Name #
POST /v1/mgmt/user/update/role/add Update User Add Roles #
POST /v1/mgmt/user/update/picture Update User Picture #
POST /v1/mgmt/user/update/customAttribute Update User Custom Attribute #
POST /v1/mgmt/jwt/update Update JWT #
POST /v2/mgmt/user/history Users Authentication History V2 #
POST /v1/mgmt/user/password/expire Expire User Passwsord #
POST /v1/mgmt/user/trusteddevices/list List Trusted Devices #
POST /v1/mgmt/user/passkey/delete Remove User Passkey #
POST /v1/mgmt/user/passkeys/import Import User Passkeys #
POST /v1/mgmt/user/passkeys/list List User Passkeys #
POST /v1/mgmt/user/password/set/active Set Active Password for User #
POST /v1/mgmt/user/trusteddevices/remove Delete Trusted Devices #
POST /v1/mgmt/user/password/set/temporary Set Temporary Password for User #
POST /v1/mgmt/user/totp/delete Delete User's TOTP Seed #
POST /v1/mgmt/user/update/tenant/add Update User Add Tenant #
POST /v1/mgmt/user/update/tenant/remove Update User Remove Tenant #
POST /v2/mgmt/user/update/role/add Update User Add Roles #
POST /v1/mgmt/user/update/role/set Set User's Roles #
POST /v1/mgmt/user/update/role/remove Update User Remove Roles #
POST /v1/mgmt/user/update/ssoapp/add Add Application to User #
POST /v1/mgmt/user/update/ssoapp/set Set Applications to User #
POST /v1/mgmt/user/update/ssoapp/remove Remove Application to User #
POST /v1/mgmt/user/logout Log user out of all sessions #
POST /v1/mgmt/user/passkeys/delete Delete User's Passkeys #
POST /v1/mgmt/user/delete Delete User #
POST /v1/mgmt/user/delete/batch Batch Delete Users #
POST /v1/mgmt/impersonate Impersonate User #
POST /v1/mgmt/auth/anonymous Anonymous User #
POST /v1/mgmt/impersonate/stepup Impersonate Stepup #
POST /v1/mgmt/stop/impersonation Stop Impersonation #
POST /v1/mgmt/auth/signin Generate JWT for Sign-In #
POST /v1/mgmt/auth/signup Generate JWT for Sign-Up #
POST /v1/mgmt/auth/signup-in Generate JWT for Sign-Up or Sign-In #
POST /v1/mgmt/authz/schema/save Save an authz schema #
POST /v1/mgmt/authz/schema/delete Delete an authz schema #
POST /v1/mgmt/authz/schema/load Load an authz schema #
POST /v1/mgmt/authz/ns/save Save an authz namespace #
POST /v1/mgmt/fga/schema/dryrun Validate an authz schema and preview the changes #
POST /v1/mgmt/authz/ns/delete Delete an authz namespace #
POST /v1/mgmt/authz/rd/save Save an authz relation definition #
POST /v1/mgmt/authz/rd/delete Delete an authz relation definition #
POST /v1/mgmt/authz/re/create Create a list of authz relations #
POST /v1/mgmt/authz/re/delete Delete a list of authz relations #
POST /v1/mgmt/authz/re/deleteresources Delete all relations for a list of resources #
POST /v1/mgmt/authz/re/deleteresourcesrelations Delete all relations with matching resourceIds for a list of resources #
POST /v1/mgmt/authz/re/has Check a list of relation queries #
POST /v1/mgmt/authz/re/who Query who can access resource with relation #
POST /v1/mgmt/authz/re/resource Load a list of defined relations for the given resource #
POST /v1/mgmt/authz/re/targets Load a list of defined relations for the given list of targets #
POST /v1/mgmt/authz/re/targetall Load a list of relations for the given target including all derived relations #
POST /v1/mgmt/authz/re/targetwithrelation Load the resources that the target has the given relation to including all… #
POST /v1/mgmt/authz/getmodified Return the list of targets and resources changed since the given date #
GET /v1/mgmt/descoper Get Descoper #
PUT /v1/mgmt/descoper Create Descoper #
DELETE /v1/mgmt/descoper Delete Descoper #
PATCH /v1/mgmt/descoper Update Descoper #
POST /v1/mgmt/descoper/list List Descopers #
POST /v1/mgmt/fga/check Check FGA Permission #
POST /v1/mgmt/fga/relations Get FGA Relations #
DELETE /v1/mgmt/fga/relations Delete All FGA Relations #
POST /v1/mgmt/fga/mappable/resources Search for FGA mappable resources #
GET /v1/mgmt/fga/mappable/resources Get Mappable Resources #
POST /v1/mgmt/fga/relations/delete Delete FGA Relations #
GET /v1/mgmt/fga/schema Get FGA Schema #
POST /v1/mgmt/fga/schema Save FGA Schema #
GET /v1/mgmt/fga/mappable/schema Get Mappable Schema #
POST /v1/mgmt/fga/resources/load Load FGA Resources #
POST /v1/mgmt/fga/resources/save Save FGA Resources #
POST /v1/mgmt/fga/backup Create FGA Backup #
GET /v1/mgmt/fga/backup/{backupId} Get FGA Backup #
DELETE /v1/mgmt/fga/backup/{backupId} Delete FGA Backup #
POST /v1/mgmt/fga/backup/{backupId}/restore Restore FGA Backup #
GET /v1/mgmt/fga/backups List FGA Backups #
POST /v1/mgmt/flow/async/result Get Management Flow async result #
POST /v1/mgmt/flow/async/run Run Management Flow asynchronously #
POST /v1/mgmt/flow/list List/Search Flows #
POST /v1/mgmt/flow/run Run Management Flow #
POST /v1/mgmt/flow/externalauth/complete Complete External Authentication #
POST /v2/mgmt/flow/export Export Flow #
POST /v2/mgmt/flow/import Import Flow #
POST /v1/mgmt/flow/delete Delete Flow #
POST /v2/mgmt/theme/export Export Theme #
POST /v2/mgmt/theme/import Import Theme #
POST /v1/mgmt/flow/template/list List Flow Templates #
POST /v1/mgmt/localization/flow/export Export Flow Localization #
POST /v1/mgmt/localization/flow/import Import Flow Localization #
GET /v1/mgmt/widget/list List all widgets #
POST /v1/mgmt/group/all Load All External Groups for a Tenant #
POST /v1/mgmt/group/member/all Load All External Groups for Specific Members #
POST /v1/mgmt/group/members Load All Members of a specific External Group #
POST /v1/mgmt/jwt/templates/create Create JWT Template #
POST /v1/mgmt/jwt/templates/delete Delete JWT Template #
POST /v1/mgmt/jwt/templates/library/apply Apply JWT Template From Library #
POST /v1/mgmt/jwt/templates/library/list List JWT Template Library #
POST /v1/mgmt/jwt/templates/library/load Load JWT Template Library Entry #
POST /v1/mgmt/jwt/templates/list List JWT Templates #
POST /v1/mgmt/jwt/templates/load Load JWT Template #
POST /v1/mgmt/jwt/templates/update Update JWT Template #
POST /v1/mgmt/jwt/templates/validate Validate JWT Template #
POST /v1/mgmt/list Create List #
POST /v1/mgmt/list/update Update List #
POST /v1/mgmt/list/delete Delete List #
GET /v1/mgmt/list/{id} Get List #
GET /v1/mgmt/list/name/{name} Get List By Name #
GET /v1/mgmt/list/all Get All Lists #
POST /v1/mgmt/list/import Import Lists #
POST /v1/mgmt/list/ip/add Add IPs to List #
POST /v1/mgmt/list/ip/remove Remove IPs from List #
POST /v1/mgmt/list/ip/check Check IP in List #
POST /v1/mgmt/list/clear Clear List #
POST /v1/mgmt/list/text/add Add Texts to List #
POST /v1/mgmt/list/text/remove Remove Texts from List #
POST /v1/mgmt/list/text/check Check Text in List #
POST /v1/mgmt/project/update/name Rename Project #
POST /v1/mgmt/project/export Export Project #
POST /v1/mgmt/project/import Import Project #
POST /v1/mgmt/project/clone Clone Project #
POST /v1/mgmt/project/delete Delete Project #
POST /v1/mgmt/project/clone/async Clone Project (Async) #
GET /v1/mgmt/project/clone/async/{processId} Get Clone Project Process #
POST /v1/mgmt/project/snapshot/export Export Project Snapshot #
POST /v1/mgmt/project/snapshot/import Import Project Snapshot #
POST /v1/mgmt/localization/messaging/export Export Messaging Localization #
POST /v1/mgmt/project/snapshot/validate Validate Project Snapshot #
POST /v1/mgmt/localization/messaging/import Import Messaging Localization #
POST /v1/mgmt/project/update/tags Update Project Tags #
POST /v1/mgmt/projects/list List Projects #
GET /v1/mgmt/managementkey Get Management Key #
PUT /v1/mgmt/managementkey Create Management Key #
PATCH /v1/mgmt/managementkey Update Management Key #
GET /v1/mgmt/managementkey/search Search Management Keys #
POST /v1/mgmt/managementkey/delete Delete Management Key #
POST /v1/mgmt/mcp/server/client/create Create MCP Server Client #
POST /v1/mgmt/mcp/server/client/update Update MCP Server Client #
POST /v1/mgmt/mcp/server/client/load Load MCP Server Client #
POST /v1/mgmt/mcp/server/client/delete Delete MCP Server Client #
POST /v1/mgmt/mcp/server/clients/delete Delete MCP Server Clients #
POST /v1/mgmt/mcp/server/clients/search Search MCP Server Clients #
POST /v1/mgmt/mcp/server/client/secret Get MCP Server Client Secret #
POST /v1/mgmt/mcp/server/client/secret/rotate Rotate MCP Server Client Secret #
POST /v1/mgmt/mcp/server/create Create MCP Server #
POST /v1/mgmt/mcp/server/update Update MCP Server #
POST /v1/mgmt/mcp/server/load Load MCP Server #
POST /v1/mgmt/mcp/server/delete Delete MCP Server #
POST /v1/mgmt/mcp/servers/delete Delete MCP Servers #
POST /v1/mgmt/mcp/servers/all Load All MCP Servers #
GET /v1/mgmt/outbound/apps List All Outbound Apps #
GET /v1/mgmt/outbound/apps-with-user-token List Outbound Apps with User Token #
GET /v1/mgmt/outbound/app/{id} Get Outbound App by ID #
POST /v1/mgmt/outbound/app/create Create Outbound App #
POST /v1/mgmt/outbound/app/update Update Outbound App #
POST /v1/mgmt/outbound/app/delete Delete Outbound App #
POST /v1/mgmt/outbound/app/user/token Fetch Outbound App User Token #
POST /v1/mgmt/outbound/app/user/token/latest Fetch Latest Outbound App User Token #
POST /v1/mgmt/outbound/app/tenant/token Fetch Outbound App Tenant Token #
POST /v1/mgmt/outbound/app/create/bydcrpreset Create outbound application according to existing dcr preset #
POST /v1/mgmt/outbound/app/create/bytemplate Create outbound application by existing template #
POST /v1/mgmt/outbound/app/tenant/token/latest Fetch Latest Outbound App Tenant Token #
POST /v1/mgmt/outbound/app/connect Connect to outbound application #
DELETE /v1/mgmt/outbound/token Delete outbound application token by id #
DELETE /v1/mgmt/outbound/user/tokens Delete outbound application tokens by appId or userId #
POST /v1/mgmt/outbound/app/user/apikey/upload Upload user API key for outbound app #
POST /v1/mgmt/outbound/app/tenant/apikey/upload Upload tenant API key for outbound app #
GET /v1/mgmt/password/settings Get Tenant Password Settings #
POST /v1/mgmt/password/settings Update Tenant Password Settings #
GET /v1/mgmt/permission/all Load All Permission #
POST /v1/mgmt/permission/create Create Permission #
POST /v1/mgmt/permission/update Update Permission #
POST /v1/mgmt/permission/delete Delete Permission #
POST /v1/mgmt/permission/create/batch Bulk Create Permissions #
POST /v1/mgmt/permission/update/batch Bulk Update Permissions #
POST /v1/mgmt/permission/delete/batch Bulk Delete Permissions #
POST /v1/mgmt/resource/create Create resource #
POST /v1/mgmt/resource/update Update resource #
GET /v1/mgmt/resource/load Load resource by ID #
GET /v1/mgmt/resource/load/uri Load resource by URI #
POST /v1/mgmt/resource/delete Delete resource #
POST /v1/mgmt/resource/delete/batch Delete resources batch #
GET /v1/mgmt/resources/load Load all resources #
POST /v1/mgmt/resource/dynamic-registration-template/create Create dynamic registration template #
POST /v1/mgmt/resource/dynamic-registration-template/update Update dynamic registration template #
GET /v1/mgmt/resource/dynamic-registration-template/load Load dynamic registration template #
POST /v1/mgmt/resource/dynamic-registration-template/delete Delete dynamic registration template #
POST /v1/mgmt/resource/dynamic-registration-templates/delete Delete dynamic registration templates #
GET /v1/mgmt/resource/dynamic-registration-templates/load Load all dynamic registration templates #
POST /v1/mgmt/resourcepolicy/create Create resource policy #
POST /v1/mgmt/resourcepolicy/update Update resource policy #
POST /v1/mgmt/resourcepolicy/delete Delete resource policy #
GET /v1/mgmt/resourcepolicy/app/load Load resource policies by app #
POST /v1/mgmt/resourcepolicy/create/batch Batch create resource policies #
POST /v1/mgmt/resourcepolicy/delete/batch Batch delete resource policies #
GET /v1/mgmt/role/all Load All Roles #
POST /v1/mgmt/role/search Search Roles #
POST /v1/mgmt/role/create Create Role #
POST /v1/mgmt/role/update Update Role #
POST /v1/mgmt/role/delete Delete Role #
POST /v1/mgmt/role/create/batch Bulk Create Roles #
POST /v1/mgmt/role/delete/batch Batch Delete Roles #
POST /v1/mgmt/role/update/batch Bulk Update Roles #
POST /v1/mgmt/sso/idp/app/wsfed/create Create SSO WS-Fed IDP application #
GET /v1/mgmt/sso/idp/apps/load Load All Applications #
GET /v1/mgmt/sso/idp/app/load Load Application by ID #
POST /v1/mgmt/sso/idp/app/wsfed/update Update SSO WS-Fed IDP application #
POST /v1/mgmt/sso/idp/app/oidc/create Create OIDC Application #
POST /v1/mgmt/sso/idp/app/oidc/update Update OIDC Application #
POST /v1/mgmt/sso/idp/app/saml/create Create SAML Application #
POST /v1/mgmt/sso/idp/app/saml/update Update SAML Application #
POST /v1/mgmt/sso/idp/app/delete Delete Application #
GET /v2/mgmt/sso/settings Get Tenant's SAML/OIDC Settings #
GET /v2/mgmt/sso/settings/all Load all SSO Settings for a tenant #
POST /v1/mgmt/sso/redirect Configure SSO Redirect URL #
POST /v1/mgmt/sso/saml Set Tenant's SAML Settings #
POST /v1/mgmt/sso/saml/metadata Set Tenant's SAML Settings via Metadata URL #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/descope-mgmt-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

descope-mgmt-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Descope Mgmt API
  description: Descope API
  contact:
    name: Descope
    url: https://descope.com
    email: support@descope.com
  version: 0.0.1
servers:
- url: https://api.descope.com
  description: Descope Production
- url: '{customUrl}'
  description: Custom server URL
  variables:
    customUrl:
      default: https://api.descope.com
      description: Your Descope API base URL
security:
- Descope Project ID: []
  Descope Project ID:Refresh JWT: []
  Descope Project ID:Session JWT: []
  Descope Project ID and Management Key: []
  Descope Project ID:Access Key: []
tags:


# --- truncated at 32 KB (463 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/descope/refs/heads/main/openapi/descope-mgmt-api-openapi.yml