terralayr · Authentication Profile

Terralayr Authentication

Authentication

terralayr secures its APIs with oauth2 and openIdConnect across 2 declared security schemes, as derived from its OpenAPI definitions. OAuth 2.0 is offered via the authorizationCode flow(s).

CompanyClimateEnergyBattery Energy StorageGrid FlexibilityRenewable EnergyCleantechEnergy Trading
Methods: oauth2, openIdConnect Schemes: 2 OAuth flows: authorizationCode API key in:

Security Schemes

openIdConnect openIdConnect
oauth2 oauth2
· flows: authorizationCode

Source

Authentication Profile

terralayr-authentication.yml Raw ↑
generated: '2026-07-21'
method: searched
source: https://www.trlyr.com/.well-known/openid-configuration
docs: https://www.trlyr.com/.well-known/openid-configuration
summary:
  types: [oauth2, openIdConnect]
  oauth2_flows: [authorizationCode]
  pkce: [S256, plain]
  note: >-
    Discovery-document-derived member-authentication surface (Umbraco CMS Delivery
    API). The LAYR flexibility product API is B2B/private and publishes no OpenAPI
    or public auth documentation.
schemes:
- name: openIdConnect
  type: openIdConnect
  openIdConnectUrl: https://www.trlyr.com/.well-known/openid-configuration
  issuer: https://www.trlyr.com/
  sources: [well-known/terralayr-openid-configuration.json]
- name: oauth2
  type: oauth2
  flows:
  - flow: authorizationCode
    authorizationUrl: https://www.trlyr.com/umbraco/delivery/api/v1/security/member/authorize
    tokenUrl: https://www.trlyr.com/umbraco/delivery/api/v1/security/member/token
    refreshUrl: https://www.trlyr.com/umbraco/delivery/api/v1/security/member/token
    scopes:
      openid: OpenID Connect authentication
      offline_access: Issue a refresh token for offline access
  grant_types_supported: [authorization_code, refresh_token]
  token_endpoint_auth_methods_supported: [client_secret_basic, client_secret_post]
  id_token_signing_alg_values_supported: [RS256]
  sources: [well-known/terralayr-oauth-authorization-server.json]