Authentik Endpoints API is one of 27 APIs that Authentik publishes on the APIs.io network, described by a machine-readable OpenAPI specification.
Tagged areas include endpoints. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, an API reference, and a GitHub repository.
This API exposes
70 operations
across 38 paths,
and defines 88 schemas.
It is described by OpenAPI 3.2.0, at version 2026.11.0-rc1.
Requests are made against a single base URL, /api/v3.
70 operations38 paths88 schemas9 DELETE31 GET8 PATCH14 POST8 PUT
Metadata
The identity and technical contract details declared by the specification.
Authentik Endpoints API declares
4 security schemes
for authenticating requests.
It accepts HTTP bearer tokens (authentik).
It uses HTTP bearer+agent authentication (authentik_device_auth).
It accepts HTTP bearer tokens (authentik_device_enroll).
It accepts HTTP bearer tokens (authentik_device_federation).
Paths & Operations 70
Across 38 paths, the API surfaces 70 operations — 9 DELETE, 31 GET, 8 PATCH, 14 POST, 8 PUT. Each is listed below with its method, path, parameters, and response codes.
endpoints 70
GET
/endpoints/agents/connectors/
Mixin to add a usedby endpoint to return a list of all objects using this object
The contract defines 88 schemas that model the data the API accepts and returns. The most detailed are DeviceUserBinding (18 properties), AgentConnector (18 properties), UserSelf (14 properties), AgentConnectorRequest (14 properties). Each schema is shown below with its type and property counts.
LicenseStatusEnum
string
PaginatedDeviceAccessGroupList
object
3 properties3 required
FleetConnector
object
FleetConnector Serializer
11 properties6 required
EndpointDevice
object
9 properties3 required
Config
object
Serialize authentik Config into DRF Object
5 properties5 required
Network
object
4 properties2 required
PatchedDeviceUserBindingRequest
object
PolicyBinding Serializer
10 properties
AgentConfig
object
Base serializer class which doesn't implement create/update methods
10 properties10 required
EnrollRequest
object
Base serializer class which doesn't implement create/update methods
2 properties2 required
DeviceUserBinding
object
PolicyBinding Serializer
18 properties10 required
DeviceGroup
object
2 properties1 required
Autocomplete
object
PaginatedAppleIndependentSecureEnclaveList
object
3 properties3 required
MDMConfigRequest
object
Base serializer class which doesn't implement create/update methods
2 properties2 required
AgentPSSOUserRegistrationRequest
object
Register Apple device user via Platform SSO
3 properties3 required
DeviceUserRequest
object
4 properties1 required
EnrollmentTokenRequest
object
5 properties2 required
NetworkRequest
object
4 properties2 required
OperatingSystem
object
For example: {"family":"linux","name":"Ubuntu","version":"24.04.3 LTS (Noble Numbat)","arch":"amd64"} {"family": "windows","name":"Server 2022 Datacenter","ver…
4 properties1 required
PaginatedGoogleChromeConnectorList
object
3 properties3 required
VendorEnum
string
Disk
object
6 properties2 required
Software
object
4 properties2 required
UserSelfRoles
object
2 properties2 required
SoftwareRequest
object
4 properties2 required
Hardware
object
6 properties1 required
ProcessRequest
object
3 properties2 required
Pagination
object
7 properties7 required
DeviceFactSnapshot
object
5 properties5 required
DeviceFactsRequest
object
9 properties
HardwareRequest
object
6 properties1 required
AppleIndependentSecureEnclave
object
5 properties4 required
UserTypeEnum
string
PatchedEndpointDeviceRequest
object
7 properties
AgentTokenResponse
object
Base serializer class which doesn't implement create/update methods
2 properties1 required
AppleIndependentSecureEnclaveRequest
object
5 properties4 required
PatchedFleetConnectorRequest
object
FleetConnector Serializer
8 properties
TypeCreate
object
Types of an object that can be created
7 properties4 required
AgentPSSODeviceRegistrationResponse
object
authentik settings for Platform SSO tokens
6 properties6 required
PartialUser
object
Partial User Serializer, does not include child relations.
8 properties4 required
PaginatedConnectorList
object
3 properties3 required
PartialGroup
object
Partial Group Serializer, does not include child relations.
5 properties3 required
DeviceFacts
object
9 properties
DeviceAccessGroup
object
3 properties2 required
EndpointDeviceRequest
object
7 properties1 required
CapabilitiesEnum
string
TokenView
object
Show token's current key
1 property1 required
AgentConnectorRequest
object
14 properties1 required
DeviceSummary
object
Summary of registered devices
3 properties3 required
EnrollmentToken
object
7 properties4 required
PatchedEnrollmentTokenRequest
object
5 properties
AgentConnector
object
18 properties5 required
UsedByActionEnum
string
DeviceConnection
object
4 properties4 required
DeviceUserBindingRequest
object
PolicyBinding Serializer
10 properties2 required
DeviceGroupRequest
object
2 properties1 required
DeviceAccessGroupRequest
object
2 properties1 required
PatchedDeviceAccessGroupRequest
object
2 properties
Process
object
3 properties2 required
NetworkInterface
object
4 properties2 required
PatchedGoogleChromeConnectorRequest
object
GoogleChromeConnector Serializer
4 properties
PaginatedDeviceUserBindingList
object
3 properties3 required
ErrorReportingConfig
object
Config for error reporting
5 properties5 required
UsedBy
object
A list of all objects referencing the queried object
5 properties5 required
DeviceUser
object
4 properties1 required
PaginatedAgentConnectorList
object
3 properties3 required
AgentPSSODeviceRegistrationRequest
object
Register Apple device via Platform SSO
4 properties4 required
NetworkInterfaceRequest
object
4 properties2 required
Connector
object
7 properties5 required
GoogleChromeConnectorRequest
object
GoogleChromeConnector Serializer
4 properties2 required
FleetConnectorRequest
object
FleetConnector Serializer
8 properties3 required
EndpointDeviceDetails
object
12 properties6 required
AgentAuthenticationResponse
object
Base serializer class which doesn't implement create/update methods
1 property1 required
ValidationError
object
Validation Error
2 properties
UserSelfGroups
object
2 properties2 required
DeviceFactsOSFamily
string
OperatingSystemRequest
object
For example: {"family":"linux","name":"Ubuntu","version":"24.04.3 LTS (Noble Numbat)","arch":"amd64"} {"family": "windows","name":"Server 2022 Datacenter","ver…
4 properties1 required
MDMConfigResponse
object
Base serializer class which doesn't implement create/update methods
3 properties3 required
DiskRequest
object
6 properties2 required
PaginatedEnrollmentTokenList
object
3 properties3 required
GoogleChromeConnector
object
GoogleChromeConnector Serializer
9 properties7 required
PaginatedEndpointDeviceList
object
3 properties3 required
UserSelf
object
User Serializer for information a user can retrieve about themselves
14 properties12 required
PatchedAgentConnectorRequest
object
14 properties
Policy
object
Policy Serializer
8 properties7 required
PatchedAppleIndependentSecureEnclaveRequest
object
5 properties
GenericError
object
Generic API Error
2 properties1 required
PaginatedFleetConnectorList
object
3 properties3 required
Specification
The full machine-readable OpenAPI contract behind this narrative.
Every API here is available over the API and to AI agents over MCP. APIs is not yet its own endpoint on the v1 API. Reach this content through network search and the tag graph, or the MCP server below.
Installs https://mcp.apievangelist.com/mcp in Claude, Cursor, VS Code and the rest — one button, every client.
MCP tools for apis
4 tools reach this content
search_api_evangelistSearch every content type across the network at once.
find_relatedThe shared-tag relevance graph — what else covers this.
get_tagEverything one tag labels, across all content types.
guide_topicPRO — a curated bundle for a topic: area, guidance, rules, papers, stories, services.
A second provider on the same verified email joins the account you already have.
Your account
ⓘWhere this information came from
This is an independent, third-party profile of Authentik Endpoints API, published by
API Evangelist. We do not operate, host, resell, or
support these APIs, and we are not affiliated with or endorsed by the company unless stated above.
Everything here is built from publicly available information — the company's own site,
developer portal, documentation, public repositories, and the specifications it publishes for public use.
Nothing is obtained by breaching a system, defeating an access control, or using credentials.
The Kin Score and Agent Readiness rating are independently calculated assessments of a company's
public API artifacts, scored against a published rubric. They are not certifications,
endorsements, security assessments, or audits.
Corrections, re-scores, and removal are free — no partnership or purchase required, and
you do not need to justify the request. A removed company is recorded as unrated, never scored
zero for having asked. Acknowledgement within one business day; removal within two.
info@apievangelist.com
·
Read the full data-sourcing policy → On a security or compliance team? Put security in the subject line and
you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.