How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Mealie Users: Authentication API

The Users: Authentication API from Mealie — 7 operation(s) for users: authentication.

Mealie Users: Authentication API is one of 57 APIs that Mealie publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Users.authentication. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, an API reference, authentication docs, and rate-limit docs.

This API exposes 7 operations across 7 paths, and defines 5 schemas. It is described by OpenAPI 3.2.0, at version nightly.

Requests are made against the base URL https://demo.mealie.io/api.

7 operations 7 paths 5 schemas 3 GET4 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
nightly
Base URL
https://demo.mealie.io/api
Authentication
OAuth 2.0
Resource Areas
1

Authentication & Security 1

Mealie Users: Authentication API declares 1 security scheme for authenticating requests. It supports OAuth 2.0 (OAuth2PasswordBearer) using the password flow.

Paths & Operations 7

Across 7 paths, the API surfaces 7 operations — 3 GET, 4 POST. Each is listed below with its method, path, parameters, and response codes.

Users: Authentication 7
POST
/api/auth/token
Get Token
get_token_api_auth_token_post body → 200422
GET
/api/auth/oauth
Oauth Login
oauth_login_api_auth_oauth_get → 200
GET
/api/auth/oauth/callback
Oauth Callback
oauth_callback_api_auth_oauth_callback_get → 200
GET
/api/auth/oauth/native/config
Oauth Native Config
oauth_native_config_api_auth_oauth_native_config_get → 200
POST
/api/auth/oauth/native/token
Oauth Native Token
oauth_native_token_api_auth_oauth_native_token_post body → 200422
POST
/api/auth/refresh
Refresh Token
refresh_token_api_auth_refresh_post → 200
POST
/api/auth/logout
Logout
logout_api_auth_logout_post 1 param → 200422

Schemas 5

The contract defines 5 schemas that model the data the API accepts and returns. The most detailed are ValidationError (5 properties), NativeOIDCTokenRequest (4 properties), OIDCNativeConfig (3 properties), Body_get_token_api_auth_token_post (3 properties). Each schema is shown below with its type and property counts.

Body_get_token_api_auth_token_post
object
3 properties
HTTPValidationError
object
1 property
ValidationError
object
5 properties 3 required
NativeOIDCTokenRequest
object
An authorization code captured by a native client, for server-side exchange.
4 properties 3 required
OIDCNativeConfig
object
Parameters a native client needs to start an OIDC authorization request itself.
3 properties 3 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

mealie-users-authentication-api-openapi.yml Raw ↑

Other APIs Mealie publishes across the network.

Mealie Admin: About API
Mealie Admin: AI Providers API
Mealie Admin: Backups API
Mealie Admin: Debug API
Mealie Admin: Email API
Mealie Admin: Maintenance API
Mealie Admin: Manage Groups API
Mealie Admin: Manage Households API
Mealie Admin: Manage Users API
Mealie App: About API
Mealie Explore: Categories API
Mealie Explore: Cookbooks API
Where this information came from

This is an independent, third-party profile of Mealie Users: Authentication API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.