Mojang website screenshot

Mojang

Mojang Studios is the developer of Minecraft. The Mojang / Minecraft Services API surface covers Minecraft player identity (UUID and profile lookup), skins and capes, name history and name change, server session verification, blocked server lists, player attributes (privacy, chat, friends settings), friends graph, presence, public keys for profile signature verification, and account entitlements. Endpoints span three hosts: the legacy api.mojang.com, the session-server sessionserver.mojang.com (Yggdrasil), and the modern Microsoft-side api.minecraftservices.com. Most read endpoints are public and unauthenticated; player-account endpoints require a Bearer Minecraft access token obtained via the Xbox Live / XSTS authentication chain.

Mojang publishes 14 APIs on the APIs.io network, including Attributes API, Authentication API, Blocklist API, and 11 more. Tagged areas include Games And Comics, Minecraft, Gaming, Identity, and Player Profiles.

The Mojang catalog on APIs.io includes 4 JSON-LD contexts and 2 Spectral governance rulesets.

Mojang’s developer surface includes authentication, documentation, and 19 more developer resources.

26.9/100 thin ▬ flat Agent 28/100 agent aware self hosted · MIT Full breakdown ↓
scored 2026-09-08 · rubric v0.20.0
14 APIs
Games And ComicsMinecraftGamingIdentityPlayer ProfilesSessionPublic APIs

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-09-08 · rubric v0.20.0
Open Source Surface applies to this provider. This product is open source and we read its repository directly, so Open Source Surface carries 10 points of the composite. It is scored from what the repository actually publishes — a security policy, a contribution guide, a release history, a code of conduct — read live from the provider rather than inferred from our own catalog pointers. This facet adds; nothing was taken away to make room for it. An open-source project is not excused from the commercial facets, because exemption would strip it of the points it does earn. If we have the wrong repository, or this product is not open source, say so on your provider repo and we will drop the facet rather than have you publish against it.
Create-or-Update Ergonomics applies to this provider. This API accepts writes, so it carries 10 points of the composite. It is scored from the published contracts themselves: whether a caller can create-or-update in one call, whether the write accepts a key the caller already holds, and whether the response says which branch ran. Without that, every write needs a search-and-branch in front of it, and the first time that check is skipped a duplicate record is created. Scored against the observed mean rather than raw — a provider at the catalog average is unchanged by this facet, not penalised by it.
The six quality facets above are damped to 80 points between them, because the conditional facet above carries the other 20. That is why each facet's contribution is shown against a damped maximum: raising a quality facet moves the composite by 80% of its nominal weight, not 100%. The full arithmetic is at apis.io/rating/.
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. Every facet and dimension name above is a link: it opens that measurement's own page — what it means, the exact checks that feed it, how the whole catalog distributes on it, and the providers at the top of it. This rating is computed from github.com/api-evangelist/mojang: open an issue to ask a question, or submit a pull request to add artifacts. Submit an artifact on GitHub — free → Manage your own listing — the Influence plan, $499/mo →

APIs 14

Individual APIs this provider publishes, each with its own machine-readable definition.

Mojang Attributes API

Profanity filter, friends, chat preferences

Mojang Authentication API

Exchange Xbox Live tokens for Minecraft access tokens

Mojang Blocklist API

Player privacy blocklist

Mojang Capes API

Cape selection and visibility

Mojang Entitlements API

Account ownership and entitlement checks

Mojang Friends API

Friends graph (list, add, remove)

Mojang Identity API

Player UUID and username lookup

Mojang Keys API

Signature keypairs and Mojang public keys

Mojang Presence API

Online / playing presence reporting

Mojang Profile API

Authenticated profile and name management

Mojang Server API

Server-policy artifacts (blocked servers)

Mojang Session API

Login-handshake session verification

Mojang Skins API

Skin selection, upload, and reset

Mojang Textures API

Player skin and cape texture lookup

Scroll for all 14

Open Collections 18

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

API Collection

OPEN COLLECTION

Minecraft Services API

OPEN COLLECTION

Mojang Public API

OPEN COLLECTION

Mojang Session Server

OPEN COLLECTION

Scroll for all 18

Rate Limits 1

Documented rate limits and quota policies.

Mojang Rate Limits

6 limits

RATE LIMITS

Semantic Vocabularies 4

JSON-LD contexts and semantic vocabularies used across these APIs.

Mojang Api Context

0 classes · 0 properties

JSON-LD

Mojang Minecraft Services Context

32 classes · 55 properties

JSON-LD

Mojang Public Api Context

5 classes · 8 properties

JSON-LD

Mojang Session Server Context

4 classes · 8 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

Mojang API Rules

5 rules · 3 warnings 2 info

SPECTRAL

Mojang API Rules

48 rules · 12 errors 24 warnings 12 info

SPECTRAL

JSON Schema 34

Standalone JSON Schema definitions for this provider's data models.

AuthenticatedProfile

5 properties

JSON SCHEMA

BanStatus

1 properties

JSON SCHEMA

Blocklist

1 properties

JSON SCHEMA

Cape

4 properties

JSON SCHEMA

CapeSelection

1 properties

JSON SCHEMA

ChangeSkinRequest

2 properties

JSON SCHEMA

EntitlementItem

3 properties

JSON SCHEMA

Entitlements

3 properties

JSON SCHEMA

Friend

2 properties

JSON SCHEMA

FriendUpdateRequest

3 properties

JSON SCHEMA

FriendsList

4 properties

JSON SCHEMA

FriendsPreferences

1 properties

JSON SCHEMA

MinecraftAccessToken

5 properties

JSON SCHEMA

NameAvailability

1 properties

JSON SCHEMA

NameChangeInfo

3 properties

JSON SCHEMA

PlayerAttributes

4 properties

JSON SCHEMA

PlayerAttributesUpdate

2 properties

JSON SCHEMA

PlayerCertificates

5 properties

JSON SCHEMA

PresenceEntry

3 properties

JSON SCHEMA

PresenceReport

2 properties

JSON SCHEMA

PrivilegeMap

4 properties

JSON SCHEMA

ProfanityFilterPreferences

1 properties

JSON SCHEMA

Profile

2 properties

JSON SCHEMA

PublicKeyEntry

1 properties

JSON SCHEMA

PublicKeys

3 properties

JSON SCHEMA

Skin

6 properties

JSON SCHEMA

XboxLoginRequest

2 properties

JSON SCHEMA

NameChange

2 properties

JSON SCHEMA

Profile

4 properties

JSON SCHEMA

SaleStatisticsRequest

1 properties

JSON SCHEMA

SaleStatistics

3 properties

JSON SCHEMA

JoinRequest

3 properties

JSON SCHEMA

SessionProfile

4 properties

JSON SCHEMA

SessionProperty

3 properties

JSON SCHEMA

Scroll for all 34

JSON Structure 34

JSON Structure definitions describing this provider's data shapes.

Minecraft Services Ban Status Structure

1 properties

JSON STRUCTURE

Minecraft Services Blocklist Structure

1 properties

JSON STRUCTURE

Minecraft Services Cape Structure

4 properties

JSON STRUCTURE

Minecraft Services Entitlements Structure

3 properties

JSON STRUCTURE

Minecraft Services Friend Structure

2 properties

JSON STRUCTURE

Minecraft Services Friends List Structure

4 properties

JSON STRUCTURE

Minecraft Services Privilege Map Structure

4 properties

JSON STRUCTURE

Minecraft Services Profile Structure

2 properties

JSON STRUCTURE

Minecraft Services Public Keys Structure

3 properties

JSON STRUCTURE

Minecraft Services Skin Structure

6 properties

JSON STRUCTURE

Public Api Name Change Structure

2 properties

JSON STRUCTURE

Public Api Profile Structure

4 properties

JSON STRUCTURE

Public Api Sale Statistics Structure

3 properties

JSON STRUCTURE

Session Server Join Request Structure

3 properties

JSON STRUCTURE

Session Server Session Profile Structure

4 properties

JSON STRUCTURE

Session Server Session Property Structure

3 properties

JSON STRUCTURE

Scroll for all 34

Examples 34

Example request and response payloads for these APIs.

Scroll for all 34

Security Posture 2

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Mojang Authentication

http · 1 scheme

SECURITY

Mojang Domain Security

TLSv1.3 · HSTS · DNSSEC · DMARC

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Mojang Agentic Access

29 operations · 14 acting · 1 human-in-the-loop

29 operations · 14 acting

AGENTIC

Resources

Documentation 2

Reference material describing how the API behaves

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Design & Contract 3

Pagination, idempotency, versioning, errors, and events

Build 7

SDKs, sample code, and the tooling you integrate with

Scroll for all 7

Access & Security 2

Authentication, authorization, and security posture

Operate 3

Status, limits, changes, and where to get help

Commercial 1

Pricing, plans, and the legal terms of use

Company 1

The organization behind the API

Other 1

Properties that don't map to a standard resource type

Source (apis.yml)

apis.yml Raw ↑
aid: mojang
name: Mojang
description: 'Mojang Studios is the developer of Minecraft. The Mojang / Minecraft Services API surface covers Minecraft player
  identity (UUID and profile lookup), skins and capes, name history and name change, server session verification, blocked
  server lists, player attributes (privacy, chat, friends settings), friends graph, presence, public keys for profile signature
  verification, and account entitlements. Endpoints span three hosts: the legacy api.mojang.com, the session-server sessionserver.mojang.com
  (Yggdrasil), and the modern Microsoft-side api.minecraftservices.com. Most read endpoints are public and unauthenticated;
  player-account endpoints require a Bearer Minecraft access token obtained via the Xbox Live / XSTS authentication chain.'
url: https://minecraft.wiki/w/Mojang_API
deliveryModel:
  model: self-hosted
  license: MIT
  open_source: true
  commercial: false
  callable_host: true
  label: Self-hosted open source · you run it yourself
  confidence: high
  source:
  - license
  - openapi
  generated: '2026-08-28'
  method: derived
accessModel:
  pricing: unknown
  onboarding: unknown
  trial: false
  try_now: false
  public: false
  label: Unknown
  confidence: low
  source:
  - authentication
  - security
  generated: '2026-09-03'
  method: derived
image: https://www.minecraft.net/etc.clientlibs/minecraft/clientlibs/main/resources/img/menu/menu-buy--reversed.gif
specificationVersion: '0.23'
created: '2026-05-28'
modified: '2026-05-30'
x-source: public-apis/public-apis
x-category: Games & Comics
x-type: company
x-tier: 2
x-tier-reason: enriched-from-public-documentation
tags:
- Games And Comics
- Minecraft
- Gaming
- Identity
- Player Profiles
- Session
- Public APIs
apis:
- aid: mojang:mojang-attributes-api
  name: Mojang Attributes API
  description: Profanity filter, friends, chat preferences
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Attributes
  properties:
  - type: OpenAPI
    url: openapi/mojang-attributes-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-authentication-api
  name: Mojang Authentication API
  description: Exchange Xbox Live tokens for Minecraft access tokens
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Authentication
  properties:
  - type: OpenAPI
    url: openapi/mojang-authentication-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-blocklist-api
  name: Mojang Blocklist API
  description: Player privacy blocklist
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Blocklist
  properties:
  - type: OpenAPI
    url: openapi/mojang-blocklist-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-capes-api
  name: Mojang Capes API
  description: Cape selection and visibility
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Capes
  properties:
  - type: OpenAPI
    url: openapi/mojang-capes-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-entitlements-api
  name: Mojang Entitlements API
  description: Account ownership and entitlement checks
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Entitlements
  properties:
  - type: OpenAPI
    url: openapi/mojang-entitlements-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-friends-api
  name: Mojang Friends API
  description: Friends graph (list, add, remove)
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Friends
  properties:
  - type: OpenAPI
    url: openapi/mojang-friends-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-identity-api
  name: Mojang Identity API
  description: Player UUID and username lookup
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Identity
  properties:
  - type: OpenAPI
    url: openapi/mojang-identity-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-keys-api
  name: Mojang Keys API
  description: Signature keypairs and Mojang public keys
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Keys
  properties:
  - type: OpenAPI
    url: openapi/mojang-keys-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-presence-api
  name: Mojang Presence API
  description: Online / playing presence reporting
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Presence
  properties:
  - type: OpenAPI
    url: openapi/mojang-presence-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-profile-api
  name: Mojang Profile API
  description: Authenticated profile and name management
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Profile
  properties:
  - type: OpenAPI
    url: openapi/mojang-profile-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-server-api
  name: Mojang Server API
  description: Server-policy artifacts (blocked servers)
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Server
  properties:
  - type: OpenAPI
    url: openapi/mojang-server-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-session-api
  name: Mojang Session API
  description: Login-handshake session verification
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Session
  properties:
  - type: OpenAPI
    url: openapi/mojang-session-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-skins-api
  name: Mojang Skins API
  description: Skin selection, upload, and reset
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Skins
  properties:
  - type: OpenAPI
    url: openapi/mojang-skins-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
- aid: mojang:mojang-textures-api
  name: Mojang Textures API
  description: Player skin and cape texture lookup
  humanURL: https://minecraft.wiki/w/Mojang_API
  baseURL: https://api.mojang.com
  tags:
  - Textures
  properties:
  - type: OpenAPI
    url: openapi/mojang-textures-api-openapi.yml
  - type: Documentation
    url: https://minecraft.wiki/w/Mojang_API
common:
- type: IssueTracker
  url: https://github.com/Mojang/brigadier/issues
- type: Releases
  url: https://github.com/Mojang/brigadier/releases
- type: License
  name: MIT
  url: https://github.com/Mojang/brigadier/blob/master/LICENSE
- type: AgenticAccess
  url: agentic-access/mojang-agentic-access.yml
- type: DomainSecurity
  url: security/mojang-domain-security.yml
- type: Authentication
  url: authentication/mojang-authentication.yml
- type: Website
  url: https://www.minecraft.net
- type: Documentation
  url: https://minecraft.wiki/w/Mojang_API
- type: Documentation
  url: https://minecraft.wiki/w/Microsoft_authentication
  title: Microsoft / Xbox Authentication Flow
- type: GitHubOrganization
  url: https://github.com/Mojang
- type: GitHubRepository
  url: https://github.com/Mojang/brigadier
  title: Brigadier Command Parser
- type: GitHubRepository
  url: https://github.com/Mojang/DataFixerUpper
  title: DataFixerUpper
- type: GitHubRepository
  url: https://github.com/Mojang/bedrock-protocol-docs
  title: Bedrock Network Protocol Docs
- type: GitHubRepository
  url: https://github.com/Mojang/bedrock-samples
  title: Bedrock Edition Add-on Samples
- type: GitHubRepository
  url: https://github.com/Mojang/minecraft-creator-tools
  title: Minecraft Creator Tools
- type: GitHubRepository
  url: https://github.com/Mojang/minecraft-debugger
  title: Minecraft VS Code Debugger
- type: PublicAPIsListing
  url: https://github.com/public-apis/public-apis
- type: RateLimits
  url: rate-limits/mojang-rate-limits.yml
- type: Vocabulary
  url: vocabulary/mojang-vocabulary.yaml
- type: SpectralRules
  url: rules/mojang-spectral-rules.yml
- type: JSONLD
  url: json-ld/mojang-api-context.jsonld
features:
- name: Public UUID Lookup
  description: Look up a Minecraft player's UUID by username (case-insensitive) without authentication via /users/profiles/minecraft/{username}.
- name: Batch UUID Resolution
  description: Resolve up to ten usernames to UUIDs in a single POST call to /profiles/minecraft (legacy) or /minecraft/profile/lookup/bulk/byname
    (modern).
- name: Skin and Cape Textures
  description: Retrieve the Base64-encoded textures property for any player via sessionserver /session/minecraft/profile/{UUID},
    optionally signed.
- name: Server Session Verification
  description: Yggdrasil hasJoined / join handshake used by every Minecraft server and client to validate that a logging-in
    player is authenticated.
- name: Blocked Server List
  description: SHA-1 hash list of servers Mojang has flagged, served as plain text from sessionserver.mojang.com/blockedservers.
- name: Authenticated Player Profile
  description: Fetch the signed-in player's own profile including all owned skins and capes via /minecraft/profile with Bearer
    auth.
- name: Skin and Cape Management
  description: Change, upload, reset, hide, and show skins and capes for the authenticated player via /minecraft/profile/skins
    and /capes/active.
- name: Name Change
  description: Check name availability, query cooldown / change history, and rename the authenticated player via /minecraft/profile/name
    endpoints.
- name: Friends and Presence
  description: Manage the player's friends graph, accept and reject requests, and publish presence (offline / online / playing)
    for friends.
- name: Player Attributes and Blocklist
  description: Read and modify the player's profanity filter, friends preferences, and chat settings, and read the player
    blocklist.
- name: Signature Keypair and Public Keys
  description: Issue per-player RSA signing keypairs and serve Mojang's rotating public keys for chat signature verification.
useCases:
- name: Minecraft Server Authentication
  description: Minecraft Java Edition servers call sessionserver.hasJoined during the login handshake to validate a player's
    session against Mojang.
- name: Player Skin Display
  description: Third-party sites and tools (NameMC, MinecraftSkinStealer, server lobby plugins) read the textures property
    from sessionserver to render player skins and capes.
- name: Username History Tools
  description: Username history dashboards once relied on /user/profiles/{uuid}/names; since deprecation tools now snapshot
    lookups from the public name-to- UUID endpoint over time.
- name: Launcher Authentication
  description: The Microsoft / Xbox Live -> XSTS -> Minecraft access-token flow backs the official Minecraft launcher and
    every third-party launcher.
- name: Blocked Server Enforcement
  description: Client-side enforcement of Mojang's EULA blocklist by hashing the server address and checking it against /blockedservers.
- name: Community Skin Galleries
  description: Skin upload sites use the authenticated skin endpoints to push player- selected skins to a signed-in Minecraft
    account.
integrations:
- name: Xbox Live
  description: Mandatory upstream identity provider for Microsoft-era Minecraft accounts; supplies the XSTS token that is
    exchanged for a Minecraft access token.
- name: Microsoft Identity Platform
  description: OAuth 2.0 device-code and authorization-code flows against login.microsoftonline.com originate the access token
    used in the Xbox Live chain.
- name: Minecraft Java Edition Servers
  description: Every Java Edition server speaks the session-server protocol to verify joining clients.
- name: Minecraft Realms
  description: Mojang's hosted Realms service consumes the same identity, friends, and presence surface for invites and join
    flows.
solutions:
- name: Minecraft Account Identity
  description: Resolve, verify, and manage Minecraft player identities across the legacy Mojang and modern Minecraft Services
    APIs from a single surface.
- name: Minecraft Server Session Trust
  description: Use the Yggdrasil session-verification surface plus the blocked- servers list to validate clients and enforce
    Mojang's server policy.
- name: Player Personalization at Scale
  description: Programmatic skin, cape, profanity, and friends management for hosted Minecraft platforms and community tools.
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com

Work with this as data

Every provider here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for providers

9 MCP tools reach this
  • find_providersBrowse and filter every provider in the catalog.
  • get_provider_artifactsEvery artifact this provider publishes, grouped by type.
  • get_provider_operationsEvery operation across all of their OpenAPIs — one call instead of parsing every spec.
  • get_provider_toolsEvery MCP tool they ship, with the operation each wraps.
  • get_provider_evidenceHow each part of their score was established. Free — the basis for a claim should not sit behind it.
  • get_provider_ratingPRO — composite, band, trend and facet scores.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This provider
curl "https://apis.io/api/v1/providers/mojang"
All providers
curl "https://apis.io/api/v1/providers?limit=25"
Every operation they expose
curl "https://apis.io/api/v1/providers/mojang/operations?limit=25"
How their score was established
curl "https://apis.io/api/v1/providers/mojang/evidence"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.