SuperTokens
SuperTokens is an open source authentication solution providing session management, social login, email/password auth, and passwordless flows for web and mobile apps. It is an open source alternative to Auth0, Firebase Auth, and AWS Cognito. SuperTokens exposes a Core Driver Interface (CDI) HTTP API for backend SDKs to communicate with the supertokens-core service, as well as a Frontend Driver Interface (FDI) for frontend SDK interaction. Available SDKs cover Node.js, Python, Go, Java, React, Flutter, iOS, and Android.
SuperTokens publishes 10 APIs on the APIs.io network, including Email Password API, Email Verification API, Health API, and 7 more. Tagged areas include Authentication, Open Source, Session Management, Social Login, and Passwordless.
The SuperTokens catalog on APIs.io includes 1 JSON-LD context and 2 Spectral governance rulesets.
SuperTokens’ developer surface includes authentication, engineering blog, and 1 more developer resources.
Kin Score
APIs 10
Individual APIs this provider publishes, each with its own machine-readable definition.
SuperTokens Email Password API
Email and password sign-up, sign-in, and password management
SuperTokens Email Verification API
Email verification token creation and validation
SuperTokens Health API
Service health and version checks
SuperTokens Multi Tenancy API
Tenant and app management
SuperTokens Passwordless API
Passwordless OTP and magic link authentication
SuperTokens Sessions API
Session creation, verification, refresh, and revocation
SuperTokens Third Party API
Social/OAuth third-party provider authentication
SuperTokens User Metadata API
User metadata storage and retrieval
SuperTokens User Roles API
User role assignment and management
SuperTokens Users API
User management and listing
Scroll for all 10
Open Collections 1
Open, tool-agnostic API collections (OpenAPI-derived and Bruno).
SuperTokens Core Driver Interface
OPEN COLLECTIONPricing Plans 1
Published pricing tiers and plan structures.
Rate Limits 1
Documented rate limits and quota policies.
Supertokens Rate Limits
RATE LIMITSFinOps 1
Cost, billing, and metering signals for API financial operations.
Supertokens Finops
FINOPSSemantic Vocabularies 1
JSON-LD contexts and semantic vocabularies used across these APIs.
Supertokens Context
JSON-LDSpectral Rules 2
Spectral governance rulesets for linting and validating these APIs.
SuperTokens API Rules
SPECTRALSuperTokens API Rules
SPECTRALJSON Schema 41
Standalone JSON Schema definitions for this provider's data models.
ApiVersionResponse
JSON SCHEMAAssignRoleRequest
JSON SCHEMAConsumePasswordlessCodeRequest
JSON SCHEMAConsumePasswordlessCodeResponse
JSON SCHEMACreatePasswordlessCodeRequest
JSON SCHEMACreatePasswordlessCodeResponse
JSON SCHEMACreateRoleRequest
JSON SCHEMACreateSessionRequest
JSON SCHEMACreateSessionResponse
JSON SCHEMAEmailVerificationTokenRequest
JSON SCHEMAEmailVerificationTokenResponse
JSON SCHEMAErrorResponse
JSON SCHEMAGetSessionResponse
JSON SCHEMAIsEmailVerifiedResponse
JSON SCHEMAListRolesResponse
JSON SCHEMAListTenantsResponse
JSON SCHEMAListUsersResponse
JSON SCHEMARefreshSessionRequest
JSON SCHEMARemoveSessionsRequest
JSON SCHEMARemoveSessionsResponse
JSON SCHEMAResetPasswordRequest
JSON SCHEMAResetPasswordTokenRequest
JSON SCHEMAResetPasswordTokenResponse
JSON SCHEMASuperTokens Session
JSON SCHEMASessionDataResponse
JSON SCHEMASignInRequest
JSON SCHEMASignInResponse
JSON SCHEMASignUpRequest
JSON SCHEMASignUpResponse
JSON SCHEMAStatusResponse
JSON SCHEMATenantRequest
JSON SCHEMATenantResponse
JSON SCHEMAThirdPartySignInUpRequest
JSON SCHEMAThirdPartySignInUpResponse
JSON SCHEMAToken
JSON SCHEMAUpdateSessionDataRequest
JSON SCHEMAUpdateUserMetadataRequest
JSON SCHEMAUser
JSON SCHEMAUserMetadataResponse
JSON SCHEMAUserRolesResponse
JSON SCHEMAVerifyEmailRequest
JSON SCHEMAScroll for all 41
JSON Structure 2
JSON Structure definitions describing this provider's data shapes.
Supertokens Session Structure
JSON STRUCTURESupertokens Structure
JSON STRUCTUREExamples 2
Example request and response payloads for these APIs.
Supertokens Signup Example
EXAMPLESecurity Posture 1
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Agentic Access 1
Recommended x-agentic-access execution contracts for AI agents.
Resources
Agent Surfaces 1
MCP servers, agent skills, and machine-readable catalogs
Access & Security 1
Authentication, authorization, and security posture
Company 1
The organization behind the API