Enterprise authentication platform

Ship auth,
not infrastructure

Auth.io is the fastest way to add OAuth2, OpenID Connect and multi-tenant identity to your product. Create a realm, register a client and issue your first token in minutes.

OAuth2 & OIDC
Multi-Tenant Realms
Keys per Client
Audit & Analytics
Usage-Based Billing
Live preview · mock data
authio.web.hyperio.tech/dashboard

Welcome back!

Track activity across your realms, clients and users at a glance.

Realms

12

9 active · +3 this week

Clients

38

34 active · 29 PKCE

Users

8.4K

across all realms

Sessions

126K

$114 est. cost

Distribution by Realm

Realm Status

12realms
Active
975%
Inactive
325%

Recent Realms

View all

acme-prod

12 clients · 128 users · created 2 months ago

partner-hub

7 clients · 64 users · created 3 weeks ago

mobile-apps

5 clients · 41 users · created 5 days ago

5 min
to first token
4
OAuth2 grant types
users per realm
100%
tenant isolation
Inside the platform

A portal built for identity teams

Six screens, one glance. Every card below is built with the product's real components — dashboard, audit trail, analytics, users, keys and security — rendered with representative data.

Analytics

Charts that answer security questions

Access activity over time, grant type distribution and environment breakdowns — devices, browsers and top IP addresses — per realm.

authio.web.hyperio.tech/realms/acme-prod

Access Analytics

Traffic, grant types and environment breakdowns for every realm.

Access Activity

Grant Types

Password Login128945%
Token Refresh70425%
Authorization Code45816%
Client Credentials2619%
API Key1355%

Devices

Desktop1892
Mobile743
Tablet212

Browsers

Chrome1521
Safari634
Firefox388
Edge304

Top IP Addresses

187.44.120.8402
34.201.10.77288
52.67.190.14173
191.36.8.20196
Audit Logs

Every access attempt, on the record

Each token issued — or blocked — becomes an audit event with full context: who, from where, and why it failed.

authio.web.hyperio.tech/dashboard

Audit & Access Intelligence

4,531 events recorded
Total Events

4,531

access events recorded

Successful

4,369

authentications passed

Failed

162

access attempts blocked

Success Rate

96%

Excellent

Recent Access Events

acme-prod

Password Login

2 min ago

Success
Sofia Almeida
187.44.120.8Chrome 126Windows 11
Jul 26, 10:42 AM
View details

Client Credentials

8 min ago

Success
billing-service
34.201.10.77
Jul 26, 10:36 AM
View details

Token Refresh

15 min ago

Success
Marcos Ribeiro
52.67.190.14Safari 17macOS 15
Jul 26, 10:29 AM
View details

Password Login

23 min ago

Failed
unknown@mail.com
191.36.8.201Firefox 128Ubuntu 24.04

Invalid credentials — account locked after 5 attempts

Jul 26, 10:21 AM
View details
Dashboard

Everything at a glance

Realms, clients, users and billing in a single command center, updated in real time.

authio.web.hyperio.tech/dashboard

Welcome back!

Track activity across your realms, clients and users at a glance.

Realms

12

9 active · +3 this week

Clients

38

34 active · 29 PKCE

Users

8.4K

across all realms

Sessions

126K

$114 est. cost

Distribution by Realm

Realm Status

12realms
Active
975%
Inactive
325%

Recent Realms

View all

acme-prod

12 clients · 128 users · created 2 months ago

partner-hub

7 clients · 64 users · created 3 weeks ago

mobile-apps

5 clients · 41 users · created 5 days ago

Users

Identity details with context

Inspect user, realm and role information with security signals in one place.

authio.web.hyperio.tech/users

User Management

Search, inspect and manage identities across every realm.

Add user
Total users

8,412

all realms

Active

8,020

95% verified

Users

View all
SA

Sofia Almeida

sofia@acme.io

Active
last login 2 min ago
MR

Marcos Ribeiro

marcos@acme.io

Active
last login 15 min ago
JC

Julia Castro

julia@partner.co

Pending
last login never
DS

Daniel Souza

daniel@acme.io

Active
last login 1 hour ago
Keys

Key lifecycle at scale

Active and revoked key inventory with rotation, ready for audit.

authio.web.hyperio.tech/keys

Security Keys

Signing and encryption key material per client, with rotation.

Rotate keys
Active keys

3

in rotation

Current

1

signing tokens now

RS256

Current

RSA Key · SIG

Active
8f2c1a9e-77b4-4f10-9d3a-2b6f0c4e8a51

Created Jun 12, 2026

ES256

EC Key · SIG

Active
c41d7b02-3e88-45c6-b7f9-91a2d5e6c3f0

Created May 30, 2026

RS256

RSA Key · ENC

Active
a93f5e17-6c02-49d8-8b41-f07c3a9d2e64

Created May 02, 2026

RS256

RSA Key · SIG

Revoked
5d80b6c3-19af-4e72-a0c5-84e1f2b7d9a3

Created Feb 18, 2026

Security

Security controls where they matter

Centralize API secrets, authentication requirements and token configuration in a single flow for each client.

  • Scoped secrets with expiry and usage tracking
  • PKCE and client authentication enforcement
  • Token issuer, audience and TTL settings
authio.web.hyperio.tech/security/api-secret

API Secrets

Scoped machine credentials with expiry and usage tracking.

New secret

Active secrets

3 secrets

production-api

sk_live_9f2a••••••••••••
Expires Dec 2026
used 4 min ago

ci-pipeline

sk_live_c7d1••••••••••••
Expires Oct 2026
used 1 hour ago

legacy-integration

sk_live_04be••••••••••••
Expires in 12 days
used 2 days ago

Client Authentication

PKCE required
S256
Client secret
Enforced
Lockout policy5 attempts / 15 min

Token Configuration

Issuer

https://auth.authio.com/realms/acme-prod

Audience

api://acme-platform
Access token TTL3600s

Ready to see your own data in these screens?

Platform

Everything you need,
nothing you don't

Enterprise-grade authentication designed for teams that value simplicity and open standards.

01

OAuth2 & OpenID Connect

Authorization Code, Password, Refresh Token and Client Credentials grants, with full OIDC discovery and JWKS endpoints.

  • 4 OAuth2 grant types
  • PKCE support (S256, Plain)
  • OIDC discovery & JWKS
02

Multi-realm architecture

Isolated realms with independent users, clients, policies and keys. Model dev, staging and production as separate tenants.

  • Complete tenant isolation
  • Multiple clients per realm
  • Per-client key material
03

Identity policies & branding

Password rules, lockout policies and username validation per client — plus a hosted login page with your own brand.

  • Fine-grained password rules
  • Custom login layout
  • Role-based access control
04

Usage-based billing

Pay only for successful logins and active sessions. Transparent pricing through Stripe, with clear plan limits.

  • Pay per session
  • Stripe integration
  • No per-seat surprises

Token management

Session and token tracking with revocation

User separation

Users isolated by client and realm

Simple integration

Standards-based, works with any stack

Portal dashboard

Manage everything in one place

Full management APIs

Realms, clients, users and consumers

Custom configuration

Per-client token and key settings

Access audit trail

Every login recorded with full context

Analytics & insights

Activity, grant type and device charts

Token inspector

Decode and verify JWTs in the portal

No vendor lock-in
Open standards
Built for scale
Capabilities

Built for every use case

Filter by area to see how Auth.io fits your architecture.

OAuth2 & OIDC

Authorization Code, Password, Refresh Token and Client Credentials grants.

Realm isolation

Complete tenant separation with independent realms for data and configuration.

Custom token keys

Per-client signing and encryption keys with full configuration control.

User management

Role-based access control per user, client and realm with fine-grained permissions.

Usage-based pricing

Pay only for successful logins and active sessions, billed through Stripe.

Custom login UI

Brand the hosted authentication screens to match your product.

NextAuth integration

Seamless OIDC integration with NextAuth for modern applications.

Session management

Track and manage active sessions and tokens through the portal.

Client management

Full client lifecycle with independent configuration per application.

Quick integration

Start authenticating immediately after realm and client setup.

Subscription plans

Flexible plans with automatic billing management via Stripe.

User separation

Automatic user isolation by client and realm for complete data segregation.

Audit logs

Every access attempt recorded with device, browser, IP and failure context.

Access analytics

Activity timelines, grant type distribution and environment breakdowns per realm.

Showing 14 capabilities

Integration

Integrate in minutes

Copy-paste ready snippets for the most common authentication flows.

NextAuth.js Integration
import NextAuth from "next-auth"

export const { handlers, signIn, signOut, auth } = NextAuth({
  providers: [
    {
      id: "authio",
      name: "Auth.io",
      type: "oidc",
      issuer: process.env.AUTHIO_ISSUER,
      clientId: process.env.AUTHIO_CLIENT_ID,
      clientSecret: process.env.AUTHIO_CLIENT_SECRET,
      authorization: {
        params: { scope: "openid profile email" }
      }
    }
  ]
})

Replace {realm}, YOUR_CLIENT_ID and YOUR_CLIENT_SECRET with the values from your dashboard.

Loading pricing plans...

FAQ

Frequently asked questions

Everything you need to know about Auth.io.

Auth.io supports 4 OAuth2 grant types: Authorization Code, Password, Refresh Token, and Client Credentials. We also provide full OIDC support with NextAuth.js integration.

Start building with Auth.io

Create your realm, register a client and issue your first token today. No credit card required to get started.

Setup in minutes
Usage-based pricing
Cancel anytime