Authentik
Authentik is an open source identity provider with a comprehensive REST API for managing users, groups, flows, providers, sources, policies, and outposts. It supports OAuth2, OIDC, SAML, LDAP, SCIM, and RADIUS protocols with official client SDKs in TypeScript, Python, Go, Rust, Kotlin, and Swift.
Authentik publishes 10 APIs on the APIs.io network, including Core API, Crypto API, Events API, and 7 more. Tagged areas include Authentication, Authorization, Identity Provider, LDAP, and OAuth.
Authentik’s developer surface includes authentication, documentation, changelog, support, pricing, engineering blog, and 8 more developer resources.
Kin Score
APIs 10
Individual APIs this provider publishes, each with its own machine-readable definition.
Authentik Core API
Users, applications, groups and tokens.
Authentik Crypto API
Certificate-key pairs.
Authentik Events API
Audit and notification events.
Authentik Flows API
Authentication and enrollment flows.
Authentik Policies API
Policies and policy bindings.
Authentik Providers API
OAuth2/OIDC, SAML, LDAP, Proxy and other providers.
Authentik RBAC API
Role-based access control.
Authentik Schema API
Self-describing OpenAPI schema.
Authentik Sources API
External identity sources.
Authentik Stages API
Flow stages (identification, password, etc.).
Scroll for all 10
Open Collections 1
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
authentik API
OPEN COLLECTIONPricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Authentik Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Authentik Finops
FINOPSFeatures 7
Notable capabilities this provider offers.
Comprehensive REST API
Full REST API covering all authentik features with built-in Swagger UI at /api/v3/ on every instance.
Multi-Protocol Support
Native support for OAuth2, OIDC, SAML, LDAP, SCIM, RADIUS, and SSTP protocols for broad integration coverage.
Flow Engine
Customizable authentication and enrollment flows with visual flow designer for configuring multi-step authentication processes.
Multi-Language SDKs
Official API client SDKs in TypeScript, Python, Go, Rust, Kotlin, and Swift auto-generated from the OpenAPI schema.
Terraform Provider
Official Terraform provider for infrastructure-as-code management of authentik resources.
Helm Deployment
Official Helm chart for Kubernetes deployment with configurable replicas, persistence, and external database support.
RBAC
Role-based access control for granular permission management across authentik resources and administrative functions.
Scroll for all 7
Security Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Use Cases 4
What developers build with this provider.
Self-Hosted Identity Provider
Deploy a complete identity provider on-premises or in private cloud with full data sovereignty.
SSO Gateway
Provide single sign-on for all internal applications using OIDC, SAML, or LDAP protocol support.
B2C Identity
Build customer-facing registration and authentication flows with customizable enrollment and recovery processes.
Zero Trust Access
Implement zero trust application access with forward auth proxy integration and per-application policies.
Integrations 5
Pre-built integrations with other platforms and tools.
Nginx/Traefik/Caddy
Forward auth integration with major reverse proxies for transparent application authentication.
Kubernetes
Native Kubernetes deployment via Helm chart with optional operator and RBAC integration.
LDAP Directory
LDAP outpost that exposes authentik users to LDAP-compatible applications without a directory server.
Grafana
Native OAuth2 integration with Grafana for unified authentication in monitoring stacks.
Nextcloud
OIDC or SAML integration with Nextcloud for unified login in self-hosted file storage.
Solutions 2
Packaged solutions this provider offers.
Self-Hosted IAM
Complete identity and access management platform deployable on any infrastructure with no vendor lock-in.
Application Gateway
Secure and authenticate any application using forward auth with optional MFA and per-user access policies.
Resources
Documentation 1
Reference material describing how the API behaves
Agent Surfaces 1
MCP servers, agent skills, and machine-readable catalogs
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 3
Authentication, authorization, and security posture
Operate 3
Status, limits, changes, and where to get help
Commercial 1
Pricing, plans, and the legal terms of use
Company 3
The organization behind the API