# Zitadel

**Canonical:** https://apis.io/providers/zitadel/  
**Website:** https://zitadel.com  
**APIs profiled:** 11

Zitadel is an open source identity infrastructure platform providing secure authentication and user management with built-in support for OAuth 2.0, OpenID Connect, SAML 2.0, SCIM, FIDO2, and passkeys. It offers multi-tenancy, fine-grained authorization, and a comprehensive management API for building and operating identity-first applications. Available as cloud-hosted and self-hosted deployments.

## Kin Score — 48.0 / 100 (developing)

Scored 2026-08-25 under rubric 0.14.0. Trend: flat (+0.0 from 48.0).

| Facet | Score |
|---|---|
| Discoverability | 64.8 |
| Contract Quality | 71.0 |
| Governance | 28.8 |
| Contract Governance | 28.8 |
| Operational Transparency | 7.9 |
| Developer Ergonomics | 35.7 |
| Commercial Clarity | 60.5 |
| Access Clarity | 60.5 |

## Agent readiness — 19.8 (agent-aware)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | bearer |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | no |
| Protected Resource Metadata | no |
| Dynamic Client Registration | no |
| Agentic Commerce | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (11)

- **Zitadel Auth API** — The Zitadel Auth API provides endpoints for authenticated users to perform operations on their own accounts, including profile management, session handling, MFA setup, and perso...
- **Zitadel Admin API** — The Zitadel Admin API provides instance-level configuration for Zitadel administrators. Used to configure instance-wide settings, default policies, SMTP, SMS providers, and mana...
- **Zitadel OIDC / OAuth 2.0** — Zitadel implements the OpenID Connect and OAuth 2.0 standards for authentication and authorization flows. Provides authorization code flow, client credentials, device code, toke...
- **Zitadel SAML API** — Zitadel provides SAML 2.0 single sign-on support, enabling enterprises to integrate with Zitadel using SAML identity federation. Accessible at /saml/v2/.
- **Zitadel Applications API** — Manage OIDC, SAML, and API applications
- **Zitadel Identity Providers API** — Manage external identity provider configurations
- **Zitadel Organizations API** — Manage organizations and organizational domains
- **Zitadel Policies API** — Manage login, password, and notification policies
- **Zitadel Projects API** — Manage projects and project grants
- **Zitadel Roles API** — Manage project roles and role grants
- **Zitadel Users API** — Manage human and machine users

## Agentic access (1)

- **Zitadel Agentic Access** — 32 operations · 26 acting

## Security (3)

- **Zitadel Authentication** — http · 1 scheme
- **Zitadel Domain Security** — TLSv1.3 · HSTS · DNSSEC · DMARC
- **Zitadel Vulnerability Disclosure** — security.txt · contact published

## Plans (1)

- **Zitadel Plans Pricing**

## Use cases (4)

- **Customer Identity** — B2C identity for customer-facing applications and portals.
- **Workforce Identity** — B2B/B2E identity for employees, contractors, and partners.
- **Machine Identity** — Service account identity and OAuth client credentials flow.
- **SaaS Multi-Tenancy** — Tenant-isolated identity for multi-tenant SaaS applications.

## Tags

Authentication, Authorization, Identity Management, Open-Source, OIDC

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/zitadel/). Scores are computed from the provider's own public artifacts under a published rubric.
