Logto Applications API

Application represents your registered software program or service that has been authorized to access user information and perform actions on behalf of users within the system. Currently, Logto supports four types of applications: - Traditional web - Single-page app - Native app - Machine-to-machine app. Depending on the application type, it may have different authentication flows and access to the system. See [🔗 Integrate Logto in your application](https://docs.logto.io/docs/recipes/integrate-logto/) to learn more about how to integrate Logto into your application. Role-based access control (RBAC) is supported for machine-to-machine applications. See [🔐 Role-based access control (RBAC)](https://docs.logto.io/docs/recipes/rbac/) to get started with role-based access control.

Business capability
Identity & Access Management BC-620.20

Operations 28

GET /api/applications Get applications #
POST /api/applications Create an application #
GET /api/applications/{id} Get application #
PATCH /api/applications/{id} Update application #
DELETE /api/applications/{id} Delete application #
PATCH /api/applications/{applicationId}/custom-data Update application custom data #
GET /api/applications/{applicationId}/roles Get application API resource roles #
POST /api/applications/{applicationId}/roles Assign API resource roles to application #
PUT /api/applications/{applicationId}/roles Update API resource roles for application #
DELETE /api/applications/{applicationId}/roles/{roleId} Remove a API resource role from application #
GET /api/applications/{id}/protected-app-metadata/custom-domains Get application custom domains #
POST /api/applications/{id}/protected-app-metadata/custom-domains Add a custom domain to the application #
DELETE /api/applications/{id}/protected-app-metadata/custom-domains/{domain} Remove custom domain #
GET /api/applications/{id}/organizations Get application organizations #
DELETE /api/applications/{id}/legacy-secret Delete application legacy secret #
GET /api/applications/{id}/secrets Get application secrets #
POST /api/applications/{id}/secrets Add application secret #
DELETE /api/applications/{id}/secrets/{name} Delete application secret #
PATCH /api/applications/{id}/secrets/{name} Update application secret #
POST /api/applications/{applicationId}/user-consent-scopes Assign user consent scopes to application #
GET /api/applications/{applicationId}/user-consent-scopes List all the user consent scopes of an application #
DELETE /api/applications/{applicationId}/user-consent-scopes/{scopeType}/{scopeId} Remove user consent scope from application #
PUT /api/applications/{applicationId}/sign-in-experience Update application level sign-in experience #
GET /api/applications/{applicationId}/sign-in-experience Get the application level sign-in experience #
GET /api/applications/{id}/users/{userId}/consent-organizations List all the user consented organizations of a application #
PUT /api/applications/{id}/users/{userId}/consent-organizations Grant a list of organization access of a user for a application #
POST /api/applications/{id}/users/{userId}/consent-organizations Grant a list of organization access of a user for a application #
DELETE /api/applications/{id}/users/{userId}/consent-organizations/{organizationId} Revoke a user's access to an organization for a application #

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/logto-applications-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

logto-applications-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Logto API references Applications API
  description: 'API references for Logto services.


    Note: The documentation is for Logto Cloud. If you are using Logto OSS, please refer to the response of `/api/swagger.json` endpoint on your Logto instance.'
  version: Cloud
servers:
- url: https://[tenant_id].logto.app/
  description: Logto endpoint address.
security:
- OAuth2:
  - all
tags:


# --- truncated at 32 KB (103 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/logto/refs/heads/main/openapi/logto-applications-api-openapi.yml