Every.org · Authentication Profile
Every Org Authentication
Authentication
Every.org's Partner (Charity) API authenticates with two classes of API key issued from the Every.org developer dashboard. Public keys authorize read access to publicly available nonprofit data and are passed as a URL query parameter; private keys authorize privileged account actions and are presented over HTTP Basic authentication with a public key as the username. There is no OAuth 2.0, OpenID Connect, or mutual-TLS surface — no /.well-known/oauth-authorization-server or /.well-known/openid-configuration document is served on any Every.org host (all probed 404 on 2026-08-28).
Every.org declares 2 security scheme(s) across its OpenAPI definitions.
CharitiesDonationsFundraisingNon-ProfitPhilanthropyWebhookGiving
Methods:
Schemes: 2
OAuth flows:
API key in:
Security Schemes
apiKey apiKey
http
Source
Authentication Profile
Work with this as data
Every security artifact here is available over the APIs.io API and to AI agents over MCP.