Aalto University · Authentication Profile
Aalto Authentication
Authentication
How Aalto University's institution-operated API surfaces authenticate. Two distinct regimes are in play: every Aalto API Gateway product is API-key gated and returns 403 to an anonymous caller, while the Aaltodoc repository's OAI-PMH and DSpace REST read surfaces are fully anonymous. Separately, Aalto operates its own Shibboleth SAML 2.0 identity provider for browser-based sign-in to campus services, which is federation infrastructure rather than an API credential.
Aalto University declares 0 security scheme(s) across its OpenAPI definitions.
UniversityHigher EducationEducationFinlandEuropePublic Research UniversityResearchResearch DataOpen DataLinked DataCourse CatalogIdentity FederationResearch ComputingLibraryAPI Gateway
Methods:
Schemes: 0
OAuth flows:
API key in:
Security Schemes
Source
Authentication Profile
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.