Platform overview
UniAuth sits between your users and your applications, handling every layer of identity so you never have to.
Users
Passwords, passkeys, magic links, social logins, MFA, recovery phrases. Every credential type your users expect, secured with Argon2id and AES-256-GCM.
UniAuth
OAuth 2.0, OIDC, SAML 2.0, SCIM 2.0, DPoP, device flow, token exchange. A standards-compliant identity layer with post-quantum session signatures.
Your apps
React SDK, Node.js SDK, REST APIs, webhooks, and dynamic client registration. Integrate in minutes with typed errors and full OIDC discovery.
Early access
Organizations
99.42%
Aggregate uptime · 30d
~72ms
Token endpoint latency
8,800+
Automated tests
A plan for every stage
Start free, scale to enterprise. Every tier ships the same security baseline.
For Individuals
Secure your personal identity with post-quantum cryptography, passwordless login, and privacy-first pairwise identifiers. Free forever for personal use.
Learn moreFor Teams
Centralize authentication for your team with SSO, shared group policies, role-based access, and a developer console for your internal tools.
Learn moreFor Enterprise
Multi-tenant organizations, SAML federation, SCIM provisioning, conditional access policies, LDAP sync, and compliance-ready audit trails.
See enterpriseFor Developers
Standards-compliant APIs (OIDC, SAML, SCIM), typed SDKs for React and Node.js, webhooks, dynamic client registration, and full documentation.
Developer portalHow it works
Three steps from zero to production-ready identity.
Register your app
Create an OAuth client in the developer console. Configure redirect URIs, select allowed scopes, and grab your client ID. Dynamic client registration is also available via the API.
Integrate the SDK
Install @uniauth/react or @uniauth/js. The SDK handles PKCE, token refresh, nonce validation, and logout with revocation. OIDC discovery configures endpoints automatically.
Ship and monitor
Users sign in with passkeys, passwords, or social accounts. You receive webhook events, query audit logs, and set conditional access policies. Auth is done.
Across every plan
Security features that ship on every tier, not upsell gates.