MainStreet Identity (OpenID Connect)

The OpenID Connect / OAuth 2.0 authorization surface behind MainStreet sign-in, served from login.mainstreet.com on an Auth0 tenant. It publishes a complete OIDC Discovery 1.0 document and an RFC 8414 authorization-server metadata document anonymously, advertising authorization-code (with PKCE S256), client credentials, refresh token, implicit, password, device code, token exchange and JWT bearer grants, DPoP, back-channel logout, and dynamic client registration. This is identity infrastructure for MainStreet's own client portal and bookkeeping app — it is not a product API and MainStreet does not document it as a developer integration point.

API entry from apis.yml

apis.yml Raw ↑
aid: mainstreet:identity
name: MainStreet Identity (OpenID Connect)
description: The OpenID Connect / OAuth 2.0 authorization surface behind MainStreet sign-in, served from
  login.mainstreet.com on an Auth0 tenant. It publishes a complete OIDC Discovery 1.0 document and an
  RFC 8414 authorization-server metadata document anonymously, advertising authorization-code (with PKCE
  S256), client credentials, refresh token, implicit, password, device code, token exchange and JWT bearer
  grants, DPoP, back-channel logout, and dynamic client registration. This is identity infrastructure
  for MainStreet's own client portal and bookkeeping app — it is not a product API and MainStreet does
  not document it as a developer integration point.
humanURL: https://login.mainstreet.com/.well-known/openid-configuration
baseURL: https://login.mainstreet.com
tags:
- Authentication
- Authorization
- OpenID Connect
- OAuth
- Identity
properties:
- type: OpenIDConnect
  url: https://login.mainstreet.com/.well-known/openid-configuration
- type: Authentication
  url: authentication/mainstreet-authentication.yml
- type: OAuthScopes
  url: scopes/mainstreet-scopes.yml