SuperTokens website screenshot

SuperTokens

SuperTokens is an open source authentication solution providing session management, social login, email/password auth, and passwordless flows for web and mobile apps. It is an open source alternative to Auth0, Firebase Auth, and AWS Cognito. SuperTokens exposes a Core Driver Interface (CDI) HTTP API for backend SDKs to communicate with the supertokens-core service, as well as a Frontend Driver Interface (FDI) for frontend SDK interaction. Available SDKs cover Node.js, Python, Go, Java, React, Flutter, iOS, and Android.

SuperTokens publishes 10 APIs on the APIs.io network, including Email Password API, Email Verification API, Health API, and 7 more. Tagged areas include Authentication, Open Source, Session Management, Social Login, and Passwordless.

The SuperTokens catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.

SuperTokens’ developer surface includes authentication, engineering blog, and 1 more developer resources.

40.6/100 thin ▬ flat Agent 41/100 agent ready Full breakdown ↓
scored 2026-08-05 · rubric v0.9.1
AccessFreemiumSelf serve⚡ Free to try
10 APIs
AuthenticationOpen SourceSession ManagementSocial LoginPasswordlessIdentityAuthorizationMulti-TenancyNode.jsSelf-Hosted

Kin Score

Kin Score Kin Score How this is scored →
scored 2026-08-05 · rubric v0.9.1
Composite quality — 40.6/100 · thin
Contract Quality 17.5 / 25
Developer Ergonomics 2.6 / 20
Commercial Clarity 7.9 / 20
Operational Transparency 2.7 / 13
Governance 2.5 / 12
Discoverability 7.4 / 10
Agent readiness — 41/100 · agent ready
Machine-Readable Contract 18 / 18
Agentic Access Contract 10 / 10
MCP Server 0 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 8 / 8
Request/Response Examples 7 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 0 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3
A2A Agent Card 0 / 8
Dry-Run / Simulate Mode 0 / 4
Improve this rating by publishing the missing artifacts — every area above can be raised, and the full rubric is at apis.io/rating/. This rating is computed from github.com/api-evangelist/supertokens: open an issue to ask a question, or submit a pull request to add artifacts. Want it done for you? Prioritized profiling — $2,500 →

APIs 10

Individual APIs this provider publishes, each with its own machine-readable definition.

SuperTokens Email Password API

Email and password sign-up, sign-in, and password management

SuperTokens Email Verification API

Email verification token creation and validation

SuperTokens Health API

Service health and version checks

SuperTokens Multi Tenancy API

Tenant and app management

SuperTokens Passwordless API

Passwordless OTP and magic link authentication

SuperTokens Sessions API

Session creation, verification, refresh, and revocation

SuperTokens Third Party API

Social/OAuth third-party provider authentication

SuperTokens User Metadata API

User metadata storage and retrieval

SuperTokens User Roles API

User role assignment and management

SuperTokens Users API

User management and listing

Scroll for all 10

Open Collections 1

Open, tool-agnostic API collections (OpenAPI-derived and Bruno).

Pricing Plans 1

Published pricing tiers and plan structures.

Rate Limits 1

Documented rate limits and quota policies.

Supertokens Rate Limits

2 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals for API financial operations.

Semantic Vocabularies 1

JSON-LD contexts and semantic vocabularies used across these APIs.

Supertokens Context

7 classes · 11 properties

JSON-LD

Spectral Rules 2

Spectral governance rulesets for linting and validating these APIs.

SuperTokens API Rules

10 rules · 5 errors 5 warnings

SPECTRAL

SuperTokens API Rules

5 rules · 3 warnings 2 info

SPECTRAL

JSON Schema 41

Standalone JSON Schema definitions for this provider's data models.

ApiVersionResponse

2 properties

JSON SCHEMA

AssignRoleRequest

3 properties

JSON SCHEMA

ConsumePasswordlessCodeRequest

4 properties

JSON SCHEMA

ConsumePasswordlessCodeResponse

3 properties

JSON SCHEMA

CreatePasswordlessCodeRequest

3 properties

JSON SCHEMA

CreatePasswordlessCodeResponse

8 properties

JSON SCHEMA

CreateRoleRequest

2 properties

JSON SCHEMA

CreateSessionRequest

4 properties

JSON SCHEMA

CreateSessionResponse

5 properties

JSON SCHEMA

EmailVerificationTokenRequest

3 properties

JSON SCHEMA

EmailVerificationTokenResponse

2 properties

JSON SCHEMA

ErrorResponse

2 properties

JSON SCHEMA

GetSessionResponse

3 properties

JSON SCHEMA

IsEmailVerifiedResponse

2 properties

JSON SCHEMA

ListRolesResponse

2 properties

JSON SCHEMA

ListTenantsResponse

2 properties

JSON SCHEMA

ListUsersResponse

3 properties

JSON SCHEMA

RefreshSessionRequest

3 properties

JSON SCHEMA

RemoveSessionsRequest

2 properties

JSON SCHEMA

RemoveSessionsResponse

2 properties

JSON SCHEMA

ResetPasswordRequest

3 properties

JSON SCHEMA

ResetPasswordTokenRequest

2 properties

JSON SCHEMA

ResetPasswordTokenResponse

2 properties

JSON SCHEMA

SuperTokens Session

8 properties

JSON SCHEMA

SessionDataResponse

2 properties

JSON SCHEMA

SignInRequest

3 properties

JSON SCHEMA

SignInResponse

2 properties

JSON SCHEMA

SignUpRequest

3 properties

JSON SCHEMA

SignUpResponse

2 properties

JSON SCHEMA

StatusResponse

1 properties

JSON SCHEMA

TenantRequest

5 properties

JSON SCHEMA

TenantResponse

3 properties

JSON SCHEMA

ThirdPartySignInUpRequest

4 properties

JSON SCHEMA

ThirdPartySignInUpResponse

3 properties

JSON SCHEMA

Token

3 properties

JSON SCHEMA

UpdateSessionDataRequest

2 properties

JSON SCHEMA

UpdateUserMetadataRequest

2 properties

JSON SCHEMA

User

7 properties

JSON SCHEMA

UserMetadataResponse

2 properties

JSON SCHEMA

UserRolesResponse

2 properties

JSON SCHEMA

VerifyEmailRequest

3 properties

JSON SCHEMA

Scroll for all 41

JSON Structure 2

JSON Structure definitions describing this provider's data shapes.

Supertokens Session Structure

0 properties

JSON STRUCTURE

Supertokens Structure

0 properties

JSON STRUCTURE

Examples 2

Example request and response payloads for these APIs.

Security Posture 1

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Supertokens Authentication

apiKey · 1 scheme

SECURITY

Agentic Access 1

Recommended x-agentic-access execution contracts for AI agents.

Supertokens Agentic Access

31 operations · 20 acting · 2 human-in-the-loop

31 operations · 20 acting

AGENTIC

Resources

Agent Surfaces 1

MCP servers, agent skills, and machine-readable catalogs

Access & Security 1

Authentication, authorization, and security posture

Company 1

The organization behind the API

Source (apis.yml)

apis.yml Raw ↑
aid: supertokens
accessModel:
  pricing: freemium
  onboarding: self-serve
  trial: false
  try_now: true
  public: false
  label: Freemium · Self-serve signup
  confidence: high
  source:
  - plans
  - authentication
  generated: '2026-07-22'
  method: derived
image: https://kinlane-images.s3.amazonaws.com/shared/apis-json/icons/supertokens.png
name: SuperTokens
description: SuperTokens is an open source authentication solution providing session management, social login, email/password
  auth, and passwordless flows for web and mobile apps. It is an open source alternative to Auth0, Firebase Auth, and AWS
  Cognito. SuperTokens exposes a Core Driver Interface (CDI) HTTP API for backend SDKs to communicate with the supertokens-core
  service, as well as a Frontend Driver Interface (FDI) for frontend SDK interaction. Available SDKs cover Node.js, Python,
  Go, Java, React, Flutter, iOS, and Android.
url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/apis.yml
created: '2026-03-25'
modified: '2026-05-30'
specificationVersion: '0.19'
tags:
- Authentication
- Open Source
- Session Management
- Social Login
- Passwordless
- Identity
- Authorization
- Multi-Tenancy
- Node.js
- Self-Hosted
apis:
- aid: supertokens:supertokens-email-password-api
  name: SuperTokens Email Password API
  description: Email and password sign-up, sign-in, and password management
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Email Password
  properties:
  - type: OpenAPI
    url: openapi/supertokens-email-password-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-email-verification-api
  name: SuperTokens Email Verification API
  description: Email verification token creation and validation
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Email Verification
  properties:
  - type: OpenAPI
    url: openapi/supertokens-email-verification-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-health-api
  name: SuperTokens Health API
  description: Service health and version checks
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Health
  properties:
  - type: OpenAPI
    url: openapi/supertokens-health-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-multi-tenancy-api
  name: SuperTokens Multi Tenancy API
  description: Tenant and app management
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Multi Tenancy
  properties:
  - type: OpenAPI
    url: openapi/supertokens-multi-tenancy-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-passwordless-api
  name: SuperTokens Passwordless API
  description: Passwordless OTP and magic link authentication
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Passwordless
  properties:
  - type: OpenAPI
    url: openapi/supertokens-passwordless-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-sessions-api
  name: SuperTokens Sessions API
  description: Session creation, verification, refresh, and revocation
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Sessions
  properties:
  - type: OpenAPI
    url: openapi/supertokens-sessions-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-third-party-api
  name: SuperTokens Third Party API
  description: Social/OAuth third-party provider authentication
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Third Party
  properties:
  - type: OpenAPI
    url: openapi/supertokens-third-party-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-user-metadata-api
  name: SuperTokens User Metadata API
  description: User metadata storage and retrieval
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - User Metadata
  properties:
  - type: OpenAPI
    url: openapi/supertokens-user-metadata-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-user-roles-api
  name: SuperTokens User Roles API
  description: User role assignment and management
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - User Roles
  properties:
  - type: OpenAPI
    url: openapi/supertokens-user-roles-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
- aid: supertokens:supertokens-users-api
  name: SuperTokens Users API
  description: User management and listing
  humanURL: https://github.com/supertokens/core-driver-interface
  baseURL: https://{supertokens-core-host}:{port}
  tags:
  - Users
  properties:
  - type: OpenAPI
    url: openapi/supertokens-users-api-openapi.yml
  - type: Documentation
    url: https://supertokens.com/docs
  - type: GitHubRepository
    url: https://github.com/supertokens/supertokens-core
  - type: API Specification
    url: https://github.com/supertokens/core-driver-interface
  - type: JSONSchema
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-schema/supertokens-session-schema.json
  - type: JSONStructure
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-structure/supertokens-session-structure.json
  - type: JSONLD
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/json-ld/supertokens-context.jsonld
  - type: SpectralRules
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/rules/supertokens-cdi-rules.yml
  - type: Vocabulary
    url: https://raw.githubusercontent.com/api-evangelist/supertokens/refs/heads/main/vocabulary/supertokens-vocabulary.yml
common:
- type: AgenticAccess
  url: agentic-access/supertokens-agentic-access.yml
- type: Authentication
  url: authentication/supertokens-authentication.yml
- url: https://supertokens.com/blog
  type: Blog
maintainers:
- FN: Kin Lane
  email: kin@apievangelist.com