Need help with your APIs? I offer API discovery, governance & evangelism services. Explore services →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

WorkOS user-management.authentication API

User authentication endpoints.

WorkOS user-management.authentication API is one of 41 APIs that WorkOS publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include user-management.authentication. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, an API reference, a GitHub repository, a changelog, and pricing.

This API exposes 5 operations across 5 paths, and defines 4 schemas. It is described by OpenAPI 3.1.1, at version 1.0.

Requests are made against 2 base URLs: https://api.workos.com, https://api.workos-test.com.

5 operations 5 paths 4 schemas 2 GET3 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.1.1
API Version
1.0
Base URL
https://api.workos.com
Authentication
HTTP Bearer, HTTP Bearer
Contact
License
Resource Areas
1

Authentication & Security 2

WorkOS user-management.authentication API declares 2 security schemes for authenticating requests. It accepts HTTP bearer tokens (JWT) (bearer). It accepts HTTP bearer tokens (JWT) (access_token). By default, every request must be authenticated.

  • bearer — Your WorkOS API key prefixed with sk. Pass it as a Bearer token: Authorization: Bearer skexample123456789.
  • access_token — An SSO access token returned from the Get a Profile and Token endpoint.

Paths & Operations 5

Across 5 paths, the API surfaces 5 operations — 2 GET, 3 POST. Each is listed below with its method, path, parameters, and response codes.

user-management.authentication 5

User authentication endpoints.

POST
/user_management/authenticate
Authenticate
UserlandSessionsController_authenticate[0] body → 200400403404422429
GET
/user_management/authorize
Get an Authorization URL
UserlandSsoController_authorize 16 params → 200302
POST
/user_management/authorize/device
Get Device Authorization URL
UserlandSsoController_deviceAuthorization body → 200400403
GET
/user_management/sessions/logout
Logout
UserlandSessionsController_logout 2 params → 200302422
POST
/user_management/sessions/revoke
Revoke Session
UserlandSessionsController_revokeSession body → 200400

Schemas 4

The contract defines 4 schemas that model the data the API accepts and returns. The most detailed are UserlandUser (13 properties), UserlandAuthenticateResponse (8 properties), DeviceAuthorizationResponse (6 properties), UserlandRevokeSessionDto (2 properties). Each schema is shown below with its type and property counts.

DeviceAuthorizationResponse
object
6 properties 4 required
UserlandUser
object
The user object.
13 properties 11 required
UserlandAuthenticateResponse
object
8 properties 3 required
UserlandRevokeSessionDto
object
2 properties 1 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

workos-user-management-authentication-api-openapi.yml Raw ↑

Other APIs WorkOS publishes across the network.

WorkOS admin-portal API
WorkOS api_keys API
WorkOS application.client-secrets API
WorkOS applications API
WorkOS audit-logs API
WorkOS authorization API
WorkOS connections API
WorkOS directories API
WorkOS directory-groups API
WorkOS directory-users API
WorkOS events API
WorkOS feature-flags API