# UCT Identity Provider (SAML 2.0 / SAFIRE / eduGAIN)

**Canonical:** https://apis.io/apis/university-of-cape-town/identity-provider/  
**Provider:** University of Cape Town — https://apis.io/providers/university-of-cape-town/  
**Base URL:** https://idp.uct.ac.za/simplesaml/saml2/idp/metadata.php  
**Documentation:** https://icts.uct.ac.za/

UCT Identity Provider (SAML 2.0 / SAFIRE / eduGAIN) is one of 5 APIs that [University of Cape Town](https://apis.io/providers/university-of-cape-town/) publishes on the [APIs.io](https://apis.io/) network. Tagged areas include Identity Federation, SAML, SAFIRE, eduGAIN, and Single Sign-On. The published artifact set on APIs.io includes API documentation.

UCT's Information and Communication Technology Services operates a SAML 2.0 identity provider registered in the South African Identity Federation (SAFIRE, registry id 000002) and published onward to eduGAIN. Confirmed in SAFIRE's signed production metadata on 2026-08-30: entityID https://srvslsfed001.uct.ac.za/simplesaml/saml2/idp/metadata.php, schacHomeOrganization uct.ac.za, homeOrganizationType university, scopes uct.ac.za / wf.uct.ac.za / ^([a-z0-9]{1,63})\.uct\.ac\.za$, REFEDS Research & Scholarship and Anonymous entity categories, SIRTFI assurance, and a published CSIRT security contact. This is a machine-readable, institution-operated surface — it is not a REST API and has no token endpoint an agent can call, but it is the one interface UCT publishes to the world that is unambiguously its own engineering. UCT publishes the metadata itself at idp.uct.ac.za (200, application/samlmetadata+xml, 2026-08-30); the entityID hostname srvslsfed001.uct.ac.za is an internal name that does not resolve publicly, which is normal for a SAML entityID.

## Machine-readable artifacts (5)

- **x-metadata** — https://idp.uct.ac.za/simplesaml/saml2/idp/metadata.php
- **x-metadata** — https://metadata.safire.ac.za/safire-prod-idp.xml
- **Documentation** — https://safire.ac.za/participants/idp/list/
- **PrivacyPolicy** — https://idp.uct.ac.za/Privacy.html
- **x-conformance** — https://raw.githubusercontent.com/api-evangelist/university-of-cape-town/refs/heads/main/conformance/university-of-cape-town-conformance.yml

## Other University of Cape Town APIs (4)

- [DataFirst Microdata Catalog API (NADA)](https://apis.io/apis/university-of-cape-town/datafirst-nada/)
- [OpenUCT Institutional Repository OAI-PMH](https://apis.io/apis/university-of-cape-town/openuct-oai-pmh/)
- [OpenUCT DSpace REST API](https://apis.io/apis/university-of-cape-town/openuct-dspace-rest/)
- [ZivaHub Open Data (Figshare for Institutions tenancy)](https://apis.io/apis/university-of-cape-town/zivahub-figshare/)

## Tags

Identity Federation, SAML, SAFIRE, eduGAIN, Single Sign-On, SIRTFI

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/apis/university-of-cape-town/identity-provider/). The API's provider profile, Kin Score and agent-readiness rating are at https://apis.io/providers/university-of-cape-town/.
