How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Unlock Protocol Auth API

The Auth API from Unlock Protocol — 6 operation(s) for auth.

Unlock Protocol Auth API is one of 34 APIs that Unlock Protocol publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Authentication. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and an API reference.

This API exposes 6 operations across 6 paths, and defines 6 schemas. It is described by OpenAPI 3.0.0, at version 2.

Requests are made against 2 base URLs: https://locksmith.unlock-protocol.com, https://staging-locksmith.unlock-protocol.com.

6 operations 6 paths 6 schemas 2 GET4 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.0.0
API Version
2
Base URL
https://locksmith.unlock-protocol.com
Authentication
HTTP Bearer, API Key
License
MIT
Resource Areas
1

Authentication & Security 2

Unlock Protocol Auth API declares 2 security schemes for authenticating requests. It accepts HTTP bearer tokens (JWT) (User). An API key is passed in the query as api-key (Application).

Paths & Operations 6

Across 6 paths, the API surfaces 6 operations — 2 GET, 4 POST. Each is listed below with its method, path, parameters, and response codes.

Auth 6
GET
/v2/auth/nonce
Provide a unique nonce for using in sign in with ethereum
nonce → 200500
POST
/v2/auth/login
Login as a user using Sign in with Ethereum message signed by the wallet address.
login body → 200400404500
POST
/v2/auth/privy
Verify an access token using Privy's library and authenticate the user
loginWithPrivy body → 200400404500
POST
/v2/auth/logout
Logout from locksmith. This will invalidate all your session tokens.
logout → 200500
POST
/v2/auth/revoke
Invalidate a session.
revoke → 200500
GET
/v2/auth/user
Get user details.
user → 200500

Schemas 6

The contract defines 6 schemas that model the data the API accepts and returns. The most detailed are AuthResult (2 properties), GenericInvalidBodyError (2 properties), GenericNotFound (1 property), GenericSuccess (1 property). Each schema is shown below with its type and property counts.

GenericInvalidBodyError
object
2 properties
Auth
object
1 property 1 required
AuthResult
object
2 properties 2 required
GenericServerError
object
1 property
GenericSuccess
object
1 property
GenericNotFound
object
1 property

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

unlock-protocol-auth-api-openapi.yml Raw ↑

Other APIs Unlock Protocol publishes across the network.

Unlock Subgraphs (GraphQL)
Unlock Protocol Applications API
Unlock Protocol Captcha API
Unlock Protocol Certificate API
Unlock Protocol Charges API
Unlock Protocol Checkout API
Unlock Protocol Claim API
Unlock Protocol Contracts API
Unlock Protocol Credit Card Details API
Unlock Protocol Email API
Unlock Protocol Email Subscriptions API
Unlock Protocol Event Collection API
Where this information came from

This is an independent, third-party profile of Unlock Protocol Auth API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.