Macquarie University · Authentication Profile

Macquarie Authentication

Authentication

Macquarie University secures its APIs with none across 1 declared security scheme, as derived from its OpenAPI definitions.

UniversityHigher EducationEducationAustraliaGroup of Eight PeerResearch DataResearch RepositoryMetadata HarvestingOAI-PMHIdentity FederationLibraryCourse Catalog
Methods: none Schemes: 1 OAuth flows: API key in:

Security Schemes

none none

Source

Authentication Profile

Raw ↑
# authorship: derived by API Evangelist from live, unauthenticated probes of the endpoint
# on 2026-08-30. Macquarie University publishes no such document; this is OURS, not theirs.
# x-method: derived
# x-source-url: https://research-management.mq.edu.au/ws/oai
generated: '2026-08-30'
method: probed
source: https://research-management.mq.edu.au/ws/oai
x-operator: institution
summary:
  types:
  - none
  note: >-
    The institution-operated surface in this repo — the Macquarie University Research Portal
    OAI-PMH endpoint — requires NO authentication. Every verb was executed anonymously over HTTPS
    and returned 200. There is no key, no token, no registration and no rate-limit header.
schemes:
- name: none
  type: none
  description: Anonymous HTTPS GET. Confirmed by executing all six OAI-PMH verbs with no credential.
  evidence:
  - url: https://research-management.mq.edu.au/ws/oai?verb=Identify
    status: 200
  - url: https://research-management.mq.edu.au/ws/oai?verb=ListMetadataFormats
    status: 200
  - url: https://research-management.mq.edu.au/ws/oai?verb=ListIdentifiers&metadataPrefix=oai_dc&set=publications:all
    status: 200
  sources:
  - openapi/macquarie-research-portal-oai-pmh-openapi.yml
transport:
  https: true
  hsts: 'max-age=2592000; preload'
  x_content_type_options: nosniff
  observed: '2026-08-30'
not_covered:
  - surface: Elsevier Pure API at https://research-management.mq.edu.au/ws/api
    scheme: apiKey header `api-key`
    x-operator: tenant
    why: >-
      The contract at /ws/api is Elsevier's — info.title "Pure API", contact
      pure-support@elsevier.com, version 5.33.3-3, relative servers url /ws/api. It is a vendor
      product spec served from a tenant host and is deliberately not described in this repo. Its
      auth scheme is recorded here only so the absence is not mistaken for an oversight.
  - surface: Macquarie University Research Data Repository at https://figshare.mq.edu.au
    scheme: Figshare OAuth 2.0 (authorizationCode) on api.figshare.com
    x-operator: tenant
    why: >-
      Figshare's generic OAuth, shared by every Figshare for Institutions customer. Removed from
      this repo on 2026-08-30 along with the Figshare contract it was derived from.
  - surface: Shibboleth IdP at https://idp.mq.edu.au/idp/shibboleth
    scheme: SAML 2.0 (institution-operated)
    x-operator: institution
    why: >-
      A federated browser SSO profile, not an HTTP API auth scheme. Recorded as an
      IdentityFederation surface and in conformance/macquarie-domain-standards.yml instead.

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/macquarie-authentication"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.