Zatanna · Authentication Profile
Zatanna Authentication
Authentication
Authentication profile derived from Zatanna's live RFC 8414 OAuth 2.0 authorization-server metadata (https://api.zatanna.ai/.well-known/oauth-authorization-server) and RFC 9728 protected-resource metadata. No first-party OpenAPI is published, so this is drawn directly from the discovery documents. Two credential paths are observed: OAuth 2.0 Authorization Code + PKCE (for MCP / agent clients) and a Zatanna-issued API key (Bearer), which the /mcp 401 body explicitly requests ("Valid API key required").
Zatanna secures its APIs with oauth2 and http across 2 declared security schemes, as derived from its OpenAPI definitions.
CompanyAPIMCPAI AgentsIntegrationReverse EngineeringAutomationOAuthY Combinator
Methods: oauth2, http
Schemes: 2
OAuth flows:
API key in:
Security Schemes
zatannaOAuth oauth2
zatannaApiKey http