Gymshark Identity (OpenID Connect)
The OpenID Connect / OAuth 2.0 authorization server Gymshark operates on its own domain at auth.gymshark.com (an Auth0 tenant) for Gymshark customer accounts across the web storefronts and the Gymshark Shop and Gymshark Training mobile apps. It is not a documented, self-serve developer API — Gymshark publishes no developer portal, client registration guide or API reference for it — but the authorization-server and OpenID provider metadata are served anonymously at the RFC 8414 / OpenID Connect Discovery well-known paths, so the endpoints, grant types, response types, scopes and claims are publicly discoverable and machine-readable.
Documentation
Other Resources
OpenIDConnect
https://auth.gymshark.com/.well-known/openid-configuration
OAuthScopes
https://raw.githubusercontent.com/api-evangelist/gymshark/refs/heads/main/scopes/gymshark-scopes.yml
WellKnown
https://raw.githubusercontent.com/api-evangelist/gymshark/refs/heads/main/well-known/gymshark-well-known.yml
Conformance
https://raw.githubusercontent.com/api-evangelist/gymshark/refs/heads/main/conformance/gymshark-conformance.yml
APIsJSON
https://raw.githubusercontent.com/api-evangelist/gymshark/refs/heads/main/apis.yml