Need help with your APIs? I offer API discovery, governance & evangelism services. Explore services →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Okta

Okta is the workforce identity incumbent — its Identity Cloud platform (also called the Okta Workforce Identity Platform) covers Single Sign-On, Adaptive MFA, Universal Directory, Lifecycle Management, Identity Governance, Privileged Access, Device Access, Identity Threat Protection, Identity Security Posture Management, Access Gateway, and API Access Management. Customer identity is handled by Auth0, which Okta acquired in 2021 and now operates as its consumer-facing identity arm. The platform now extends to securing AI agents via Okta for AI Agents and the Cross-App Access (XAA) protocol — an emerging OAuth profile based on the IETF ID-JAG draft for agent-to-app authorization. The Okta Management API is the primary developer surface, with an official MCP server (okta-mcp-server) exposing administrative operations to LLM agents under human-in-the-loop confirmation.

agent native

Reference-quality API operations across every facet — a rich contract, published governance, transparent operations, and machine-readable commercial terms.

Kin Score

API Evangelist profiles Okta the way a machine reads it — 552 machine-readable artifacts across 28 APIs, pulled from the provider's own public surface and indexed so a developer, an analyst, or an AI agent can evaluate it against every other provider on the network.

Every provider in the network is reduced to the same set of machine-readable artifacts — OpenAPI contracts, event specifications, GraphQL schemas, runnable collections, pricing and rate-limit signals, security posture, OAuth scopes, and the agent surfaces (MCP servers and skills) that let software drive the API on its own. We profile them because the interface is the part of a company you can actually inspect: it is a truer signal of what a provider does than any marketing page. From those artifacts we compute the Kin Score — Okta scores 74.7/100 (exemplar), with a separate agent-readiness read of 65/100 (agent native). The full breakdown is below, followed by every artifact we hold — each card links through to its machine-readable definition on apis.io.

Kin Score

This is the API Evangelist rating — a single, repeatable read computed from the artifacts on this page. Green fill is points earned; the red track is points possible, so every bar shows earned-versus-possible at a glance.

Kin Score Kin Score How this is scored →
scored 2026-07-27 · rubric v0.5
Composite quality — 74.7/100 · exemplar
Contract Quality 19.0 / 25
Developer Ergonomics 15.2 / 20
Commercial Clarity 16.3 / 20
Operational Transparency 8.9 / 13
Governance 7.3 / 12
Discoverability 8.0 / 10
Agent readiness — 65/100 · agent native
Machine-Readable Contract 18 / 18
Agentic Access Contract 15 / 15
MCP Server 12 / 12
Machine-Readable Auth 10 / 10
Idempotency 0 / 9
Stable Error Semantics 0 / 8
Request/Response Examples 0 / 7
Rate-Limit Signaling 7 / 7
Typed Event Surface 6 / 6
Agent Skills 0 / 5
Well-Known Catalog 0 / 4
Consent & Bot Identity 0 / 3

How we profile Okta

Each block below is one kind of artifact we hold for Okta. For each we say what it is and why it earns a place in the profile, then list every one we've indexed — capped at two rows, scroll within the panel for the rest.

APIs 28

Each API is captured as its own OpenAPI definition — every operation, parameter, and response. This is the single most useful machine-readable description of what an API does, and it's what lets us score, lint, mock, and generate against it without asking the provider for anything.

Individual APIs this provider publishes, each with its own machine-readable definition.

Cross-App Access (XAA)

Cross-App Access is Okta's emerging OAuth profile for secure agent-to-app and app-to-app authorization, based on the IETF draft "OAuth Identity Assertion Authorization Grant" (I...

Okta for AI Agents

Okta for AI Agents secures the full lifecycle of AI agents — discovery, registration with mandatory human ownership, least-privilege scope enforcement, runtime monitoring, and i...

Okta Application API

The Application API from Okta — 31 operation(s) for application.

Okta Authenticator API

The Authenticator API from Okta — 4 operation(s) for authenticator.

Okta AuthorizationServer API

The AuthorizationServer API from Okta — 21 operation(s) for authorizationserver.

Okta Brand API

The Brand API from Okta — 15 operation(s) for brand.

Okta Domain API

The Domain API from Okta — 4 operation(s) for domain.

Okta EventHook API

The EventHook API from Okta — 5 operation(s) for eventhook.

Okta Feature API

The Feature API from Okta — 5 operation(s) for feature.

Okta Group API

The Group API from Okta — 16 operation(s) for group.

Okta GroupSchema API

The GroupSchema API from Okta — 1 operation(s) for groupschema.

Okta IdentityProvider API

The IdentityProvider API from Okta — 16 operation(s) for identityprovider.

Okta InlineHook API

The InlineHook API from Okta — 5 operation(s) for inlinehook.

Okta LinkedObject API

The LinkedObject API from Okta — 2 operation(s) for linkedobject.

Okta Log API

The Log API from Okta — 1 operation(s) for log.

Okta NetworkZone API

The NetworkZone API from Okta — 4 operation(s) for networkzone.

Okta Org API

The Org API from Okta — 14 operation(s) for org.

Okta Policy API

The Policy API from Okta — 8 operation(s) for policy.

Okta ProfileMapping API

The ProfileMapping API from Okta — 2 operation(s) for profilemapping.

Okta Session API

The Session API from Okta — 3 operation(s) for session.

Okta Subscription API

The Subscription API from Okta — 6 operation(s) for subscription.

Okta Template API

The Template API from Okta — 2 operation(s) for template.

Okta ThreatInsight API

The ThreatInsight API from Okta — 1 operation(s) for threatinsight.

Okta TrustedOrigin API

The TrustedOrigin API from Okta — 4 operation(s) for trustedorigin.

Okta User API

The User API from Okta — 36 operation(s) for user.

Okta UserFactor API

The UserFactor API from Okta — 7 operation(s) for userfactor.

Okta UserSchema API

The UserSchema API from Okta — 2 operation(s) for userschema.

Okta UserType API

The UserType API from Okta — 2 operation(s) for usertype.

Scroll within the panel for all 28 ·

Postman Collections 1

A runnable collection turns the contract into something a developer can execute in seconds. We profile them because the fastest way to trust an API is to make a real call against it.

Ready-to-run Postman collections for exercising this provider's APIs.

Okta API

POSTMAN

Arazzo Workflows 21

Real integrations are rarely a single call. Arazzo describes the multi-step sequences — auth, then create, then confirm — so both a human and an agent can follow the choreography, not just the endpoints.

Multi-step API workflows described with the Arazzo specification.

Okta Assign Admin Role to Group

Assign an administrator role to a group and verify the assignment.

ARAZZO

Okta Assign Admin Role to User

Assign an administrator role to a user and verify the assignment.

ARAZZO

Okta Assign Group to Application

Find a group by name and assign it to an application for bulk access.

ARAZZO

Okta Create and Activate Application

Create an application in INACTIVE state and then activate it.

ARAZZO

Okta Create and Activate Authenticator

Add an authenticator to the org and activate it for enrollment.

ARAZZO

Okta Create and Activate Group Rule

Create a dynamic group rule and activate it so it begins evaluating.

ARAZZO

Okta Create and Refresh Session

Create a session from a session token and extend its lifetime.

ARAZZO

Okta Create Application, Assign User, and Activate

Create an application, assign a user to it, then activate the application.

ARAZZO

Okta Create Group and Add Members

Create a new Okta group and add two users to it.

ARAZZO

Okta Create Policy with Rule and Activate

Create a policy, add a rule to it, and activate the policy.

ARAZZO

Okta Create User with Group Membership

Create a user pre-seeded with groups, then verify their memberships.

ARAZZO

Okta Deactivate and Delete User

Deactivate a user and then permanently delete the deprovisioned account.

ARAZZO

Okta Enroll and Activate User Factor

Enroll an MFA factor for a user and activate it with a passcode.

ARAZZO

Okta Find User and Assign Application

Look up a user by login and assign them to an application if found.

ARAZZO

Okta Find User and Suspend

Look up a user by login and suspend them if an active match exists.

ARAZZO

Okta Offboard User and Clear Sessions

Suspend a user and clear all of their active sessions.

ARAZZO

Okta Onboard User to Group and Application

Create a user, add them to a group, then assign them to an application.

ARAZZO

Okta Provision Admin User

Create a user and immediately grant them an administrator role.

ARAZZO

Okta Restore Suspended User

Unsuspend a user and verify they are returned to an active state.

ARAZZO

Okta Reset and Re-enroll User Factor

Reset all of a user's MFA factors and enroll a fresh factor.

ARAZZO

Okta Update Group Rule Expression

Deactivate a group rule, update its expression, then reactivate it.

ARAZZO

Scroll within the panel for all 21 ·

MCP Servers 1

Model Context Protocol servers expose these APIs directly to AI agents. We profile them because agent-native access is the fastest-growing way this provider's capabilities actually get used.

Model Context Protocol servers that expose these APIs to AI agents.

Okta MCP Server

MCP SERVER

GraphQL 1

Where a provider ships GraphQL, the schema is the contract. We profile it alongside the REST surface so the whole interface is legible in one place.

GraphQL schemas published by this provider.

Okta GraphQL Schema

Okta does not currently expose a public GraphQL API endpoint. The platform's primary developer surface is the Okta Management REST API, supplemented by the Events API (AsyncAPI)...

GRAPHQL

Pricing Plans 1

Pricing is part of the interface. Machine-readable plans tell you what a tier costs and includes before you commit — one of the six things the Kin Score reads for commercial clarity.

Published pricing tiers and plan structures.

Okta Plans Pricing

6 plans

PLANS

Rate Limits 1

Rate limits are the difference between a demo that works and a production integration that doesn't fall over. Publishing them is an operational-transparency signal — and a hard requirement for any agent that plans its own throughput.

Documented rate limits and quota policies.

Okta Rate Limits

5 limits

RATE LIMITS

FinOps 1

Cost, billing, and metering signals let a buyer model the financial operations of an API before it's live. We profile them for the same reason we profile pricing: the money is part of the contract.

Cost, billing, and metering signals for API financial operations.

Okta Finops

FINOPS

Features 19

The notable capabilities this provider advertises, captured as structured features so they can be searched and compared instead of read one landing page at a time.

Notable capabilities this provider offers.

Workforce Identity Starter at $6/user/mo: SSO + MFA + Universal Directory + 5 Workflows ($1,500/yr minimum)
Core Essentials at $14/user/mo: Adaptive MFA, Privileged Access, Lifecycle Mgmt, Access Governance
Essentials at $17/user/mo: All Core Essentials + 50 Workflows
Professional: Device Access, ISPM, Identity Threat Protection, Sandbox, Unlimited Workflows (custom pricing)
Enterprise: API Access Management, Access Gateway, M2M Tokens (custom pricing)
Customer Identity (Auth0) Enterprise Base: $3K/mo base + B2C / B2B suites
Default rate limits 600 req/min on most endpoints
OAuth /token at 1,000 req/min
System Log endpoint capped at 120 req/min
Protocols: OIDC, SAML, WS-Fed, SCIM
Universal Directory with custom attributes
Workflows for no-code automation (5 / 50 / unlimited by SKU)
Adaptive MFA with risk-based policies
Identity Threat Protection (Professional+)
Identity Security Posture Management (Professional+)
API Access Management (Enterprise) — OAuth as a Service
Okta for AI Agents: agent discovery, registration, ownership, least-privilege, revocation
Cross-App Access (XAA): OAuth ID-JAG draft for agent-to-app authorization
Okta MCP Server: Python, LLM-facing admin CRUD with confirmation gates

Scroll within the panel for all 19 ·

Event Specifications 1

Not every API is request/response. AsyncAPI describes the event-driven and streaming side — the webhooks and channels — so the asynchronous half of the interface is documented the same way the synchronous half is.

AsyncAPI definitions for this provider's event-driven and streaming APIs.

Okta Event Hooks and Log Streams

AsyncAPI description of Okta's two outbound event delivery surfaces: 1. **Event Hooks** — Okta POSTs a CloudEvents-style envelope to a customer-owned HTTPS endpoint whenever a s...

ASYNCAPI

Semantic Vocabularies 1

JSON-LD contexts give the data shared meaning across APIs. We profile them because semantics are what let a machine reconcile 'customer' here with 'customer' somewhere else.

JSON-LD contexts and semantic vocabularies used across these APIs.

Okta Context

30 classes · 15 properties

JSON-LD

Spectral Rules 3

Governance rulesets we run against this provider's specs — the automated checks behind parts of the score. Profiling them makes the quality bar explicit and re-runnable, not a matter of opinion.

Okta API Rules

7 rules · 1 errors · 5 warnings

SPECTRAL

Okta API Rules

5 rules · 3 warnings

SPECTRAL

Okta API Rules

10 rules · 4 errors · 5 warnings

SPECTRAL

JSON Schema 462

Standalone JSON Schema definitions describe the data models behind the API. We profile them so the shapes are validatable on their own — useful long after a single request is forgotten.

Standalone JSON Schema definitions for this provider's data models.

AccessPolicy

0 properties

JSON SCHEMA

AccessPolicyConstraint

3 properties

JSON SCHEMA

AccessPolicyConstraints

2 properties

JSON SCHEMA

AccessPolicyRule

3 properties

JSON SCHEMA

AccessPolicyRuleActions

1 properties

JSON SCHEMA

AccessPolicyRuleApplicationSignOn

2 properties

JSON SCHEMA

AccessPolicyRuleConditions

3 properties

JSON SCHEMA

AccessPolicyRuleCustomCondition

1 properties

JSON SCHEMA

AcsEndpoint

2 properties

JSON SCHEMA

ActivateFactorRequest

5 properties

JSON SCHEMA

AllowedForEnum

0 properties

JSON SCHEMA

AppAndInstancePolicyRuleCondition

2 properties

JSON SCHEMA

AppInstancePolicyRuleCondition

2 properties

JSON SCHEMA

Okta Application

13 properties

JSON SCHEMA

ApplicationAccessibility

3 properties

JSON SCHEMA

ApplicationCredentials

2 properties

JSON SCHEMA

ApplicationCredentialsOAuthClient

5 properties

JSON SCHEMA

ApplicationCredentialsScheme

0 properties

JSON SCHEMA

ApplicationCredentialsSigning

5 properties

JSON SCHEMA

ApplicationCredentialsSigningUse

0 properties

JSON SCHEMA

ApplicationFeature

5 properties

JSON SCHEMA

ApplicationGroupAssignment

6 properties

JSON SCHEMA

ApplicationLicensing

1 properties

JSON SCHEMA

ApplicationSettings

5 properties

JSON SCHEMA

ApplicationSettingsApplication

7 properties

JSON SCHEMA

ApplicationSettingsNotes

2 properties

JSON SCHEMA

ApplicationSettingsNotifications

1 properties

JSON SCHEMA

ApplicationSettingsNotificationsVpn

3 properties

JSON SCHEMA

ApplicationSignOnMode

0 properties

JSON SCHEMA

ApplicationVisibility

4 properties

JSON SCHEMA

ApplicationVisibilityHide

2 properties

JSON SCHEMA

AppLink

10 properties

JSON SCHEMA

AppUser

14 properties

JSON SCHEMA

AppUserCredentials

2 properties

JSON SCHEMA

AppUserPasswordCredential

1 properties

JSON SCHEMA

AssignRoleRequest

1 properties

JSON SCHEMA

AuthenticationProvider

2 properties

JSON SCHEMA

AuthenticationProviderType

0 properties

JSON SCHEMA

Authenticator

10 properties

JSON SCHEMA

AuthenticatorProvider

2 properties

JSON SCHEMA

AuthenticatorProviderConfiguration

8 properties

JSON SCHEMA

AuthenticatorSettings

6 properties

JSON SCHEMA

AuthenticatorStatus

0 properties

JSON SCHEMA

AuthenticatorType

0 properties

JSON SCHEMA

AuthorizationServer

12 properties

JSON SCHEMA

AuthorizationServerCredentials

1 properties

JSON SCHEMA

AuthorizationServerCredentialsUse

0 properties

JSON SCHEMA

AuthorizationServerPolicy

12 properties

JSON SCHEMA

AuthorizationServerPolicyRule

10 properties

JSON SCHEMA

AuthorizationServerPolicyRuleActions

1 properties

JSON SCHEMA

AutoLoginApplication

2 properties

JSON SCHEMA

AutoLoginApplicationSettings

1 properties

JSON SCHEMA

AutoLoginApplicationSettingsSignOn

2 properties

JSON SCHEMA

BasicApplicationSettings

1 properties

JSON SCHEMA

BasicApplicationSettingsApplication

2 properties

JSON SCHEMA

BasicAuthApplication

3 properties

JSON SCHEMA

BookmarkApplication

2 properties

JSON SCHEMA

BookmarkApplicationSettings

1 properties

JSON SCHEMA

Brand

5 properties

JSON SCHEMA

BrowserPluginApplication

1 properties

JSON SCHEMA

CallUserFactor

1 properties

JSON SCHEMA

CallUserFactorProfile

2 properties

JSON SCHEMA

CapabilitiesCreateObject

1 properties

JSON SCHEMA

CapabilitiesObject

2 properties

JSON SCHEMA

CapabilitiesUpdateObject

3 properties

JSON SCHEMA

CatalogApplication

12 properties

JSON SCHEMA

CatalogApplicationStatus

0 properties

JSON SCHEMA

ChangeEnum

0 properties

JSON SCHEMA

ChangePasswordRequest

2 properties

JSON SCHEMA

ChannelBinding

2 properties

JSON SCHEMA

ClientPolicyCondition

1 properties

JSON SCHEMA

ClientSecret

7 properties

JSON SCHEMA

ClientSecretMetadata

1 properties

JSON SCHEMA

Compliance

1 properties

JSON SCHEMA

ContextPolicyRuleCondition

1 properties

JSON SCHEMA

CreateSessionRequest

1 properties

JSON SCHEMA

CreateUserRequest

4 properties

JSON SCHEMA

Csr

4 properties

JSON SCHEMA

CsrMetadata

2 properties

JSON SCHEMA

CsrMetadataSubject

6 properties

JSON SCHEMA

CsrMetadataSubjectAltNames

1 properties

JSON SCHEMA

CustomHotpUserFactor

2 properties

JSON SCHEMA

CustomHotpUserFactorProfile

1 properties

JSON SCHEMA

DeviceAccessPolicyRuleCondition

2 properties

JSON SCHEMA

DevicePolicyRuleCondition

4 properties

JSON SCHEMA

DevicePolicyRuleConditionPlatform

2 properties

JSON SCHEMA

DNSRecord

4 properties

JSON SCHEMA

DNSRecordType

0 properties

JSON SCHEMA

Domain

6 properties

JSON SCHEMA

DomainCertificate

4 properties

JSON SCHEMA

DomainCertificateMetadata

3 properties

JSON SCHEMA

DomainCertificateSourceType

0 properties

JSON SCHEMA

DomainCertificateType

0 properties

JSON SCHEMA

DomainListResponse

1 properties

JSON SCHEMA

DomainValidationStatus

0 properties

JSON SCHEMA

Duration

2 properties

JSON SCHEMA

EmailTemplate

2 properties

JSON SCHEMA

EmailTemplateContent

5 properties

JSON SCHEMA

EmailTemplateCustomization

8 properties

JSON SCHEMA

EmailTemplateCustomizationRequest

4 properties

JSON SCHEMA

EmailTemplateTestRequest

1 properties

JSON SCHEMA

EmailTemplateTouchPointVariant

0 properties

JSON SCHEMA

EmailUserFactor

1 properties

JSON SCHEMA

EmailUserFactorProfile

1 properties

JSON SCHEMA

EnabledStatus

0 properties

JSON SCHEMA

EndUserDashboardTouchPointVariant

0 properties

JSON SCHEMA

ErrorPageTouchPointVariant

0 properties

JSON SCHEMA

EventHook

10 properties

JSON SCHEMA

EventHookChannel

3 properties

JSON SCHEMA

EventHookChannelConfig

3 properties

JSON SCHEMA

EventHookChannelConfigAuthScheme

3 properties

JSON SCHEMA

EventHookChannelConfigAuthSchemeType

0 properties

JSON SCHEMA

EventHookChannelConfigHeader

2 properties

JSON SCHEMA

EventSubscriptions

2 properties

JSON SCHEMA

FactorProvider

0 properties

JSON SCHEMA

FactorResultType

0 properties

JSON SCHEMA

FactorStatus

0 properties

JSON SCHEMA

FactorType

0 properties

JSON SCHEMA

Feature

7 properties

JSON SCHEMA

FeatureStage

2 properties

JSON SCHEMA

FeatureStageState

0 properties

JSON SCHEMA

FeatureStageValue

0 properties

JSON SCHEMA

FeatureType

0 properties

JSON SCHEMA

FipsEnum

0 properties

JSON SCHEMA

ForgotPasswordResponse

1 properties

JSON SCHEMA

GrantTypePolicyRuleCondition

1 properties

JSON SCHEMA

Okta Group

8 properties

JSON SCHEMA

GroupCondition

2 properties

JSON SCHEMA

GroupPolicyRuleCondition

2 properties

JSON SCHEMA

GroupProfile

2 properties

JSON SCHEMA

GroupRule

8 properties

JSON SCHEMA

GroupRuleAction

1 properties

JSON SCHEMA

GroupRuleConditions

2 properties

JSON SCHEMA

GroupRuleExpression

2 properties

JSON SCHEMA

GroupRuleGroupAssignment

1 properties

JSON SCHEMA

GroupRuleGroupCondition

2 properties

JSON SCHEMA

GroupRulePeopleCondition

2 properties

JSON SCHEMA

GroupRuleStatus

0 properties

JSON SCHEMA

GroupRuleUserCondition

2 properties

JSON SCHEMA

GroupSchema

11 properties

JSON SCHEMA

GroupSchemaAttribute

17 properties

JSON SCHEMA

GroupSchemaBase

4 properties

JSON SCHEMA

GroupSchemaBaseProperties

2 properties

JSON SCHEMA

GroupSchemaCustom

4 properties

JSON SCHEMA

GroupSchemaDefinitions

2 properties

JSON SCHEMA

GroupType

0 properties

JSON SCHEMA

HardwareUserFactor

1 properties

JSON SCHEMA

HardwareUserFactorProfile

1 properties

JSON SCHEMA

IdentityProvider

10 properties

JSON SCHEMA

IdentityProviderApplicationUser

7 properties

JSON SCHEMA

IdentityProviderCredentials

3 properties

JSON SCHEMA

IdentityProviderCredentialsClient

2 properties

JSON SCHEMA

IdentityProviderCredentialsSigning

3 properties

JSON SCHEMA

IdentityProviderCredentialsTrust

5 properties

JSON SCHEMA

IdentityProviderPolicy

4 properties

JSON SCHEMA

IdentityProviderPolicyRuleCondition

2 properties

JSON SCHEMA

IdpPolicyRuleAction

1 properties

JSON SCHEMA

IdpPolicyRuleActionProvider

2 properties

JSON SCHEMA

IframeEmbedScopeAllowedApps

0 properties

JSON SCHEMA

ImageUploadResponse

1 properties

JSON SCHEMA

InactivityPolicyRuleCondition

2 properties

JSON SCHEMA

InlineHook

9 properties

JSON SCHEMA

InlineHookChannel

3 properties

JSON SCHEMA

InlineHookChannelConfig

4 properties

JSON SCHEMA

InlineHookChannelConfigAuthScheme

3 properties

JSON SCHEMA

InlineHookChannelConfigHeaders

2 properties

JSON SCHEMA

InlineHookPayload

0 properties

JSON SCHEMA

InlineHookResponse

1 properties

JSON SCHEMA

InlineHookResponseCommands

2 properties

JSON SCHEMA

InlineHookResponseCommandValue

3 properties

JSON SCHEMA

InlineHookStatus

0 properties

JSON SCHEMA

InlineHookType

0 properties

JSON SCHEMA

IonField

9 properties

JSON SCHEMA

IonForm

9 properties

JSON SCHEMA

JsonWebKey

16 properties

JSON SCHEMA

JwkUse

1 properties

JSON SCHEMA

KnowledgeConstraint

0 properties

JSON SCHEMA

LifecycleCreateSettingObject

1 properties

JSON SCHEMA

LifecycleDeactivateSettingObject

1 properties

JSON SCHEMA

LinkedObject

3 properties

JSON SCHEMA

LinkedObjectDetails

4 properties

JSON SCHEMA

LinkedObjectDetailsType

0 properties

JSON SCHEMA

LogActor

5 properties

JSON SCHEMA

LogAuthenticationContext

7 properties

JSON SCHEMA

LogAuthenticationProvider

0 properties

JSON SCHEMA

LogClient

6 properties

JSON SCHEMA

LogCredentialProvider

0 properties

JSON SCHEMA

LogCredentialType

0 properties

JSON SCHEMA

LogDebugContext

1 properties

JSON SCHEMA

LogEvent

16 properties

JSON SCHEMA

LogGeographicalContext

5 properties

JSON SCHEMA

LogGeolocation

2 properties

JSON SCHEMA

LogIpAddress

4 properties

JSON SCHEMA

LogIssuer

2 properties

JSON SCHEMA

LogOutcome

2 properties

JSON SCHEMA

LogRequest

1 properties

JSON SCHEMA

LogSecurityContext

5 properties

JSON SCHEMA

LogSeverity

0 properties

JSON SCHEMA

LogTarget

5 properties

JSON SCHEMA

LogTransaction

3 properties

JSON SCHEMA

LogUserAgent

3 properties

JSON SCHEMA

MDMEnrollmentPolicyRuleCondition

2 properties

JSON SCHEMA

MultifactorEnrollmentPolicy

0 properties

JSON SCHEMA

MultifactorEnrollmentPolicySettings

2 properties

JSON SCHEMA

NetworkZone

14 properties

JSON SCHEMA

NetworkZoneAddress

2 properties

JSON SCHEMA

NetworkZoneAddressType

0 properties

JSON SCHEMA

NetworkZoneLocation

2 properties

JSON SCHEMA

NetworkZoneStatus

0 properties

JSON SCHEMA

NetworkZoneType

0 properties

JSON SCHEMA

NetworkZoneUsage

0 properties

JSON SCHEMA

NotificationType

0 properties

JSON SCHEMA

OAuth2Actor

2 properties

JSON SCHEMA

OAuth2Claim

11 properties

JSON SCHEMA

OAuth2ClaimConditions

1 properties

JSON SCHEMA

OAuth2Client

5 properties

JSON SCHEMA

OAuth2RefreshToken

12 properties

JSON SCHEMA

OAuth2Scope

8 properties

JSON SCHEMA

OAuth2ScopeConsentGrant

12 properties

JSON SCHEMA

OAuth2ScopeConsentGrantSource

0 properties

JSON SCHEMA

OAuth2ScopeConsentGrantStatus

0 properties

JSON SCHEMA

OAuth2Token

11 properties

JSON SCHEMA

OAuthApplicationCredentials

1 properties

JSON SCHEMA

OAuthAuthorizationPolicy

0 properties

JSON SCHEMA

OAuthEndpointAuthenticationMethod

0 properties

JSON SCHEMA

OAuthGrantType

0 properties

JSON SCHEMA

OAuthResponseType

0 properties

JSON SCHEMA

OktaSignOnPolicy

1 properties

JSON SCHEMA

OktaSignOnPolicyConditions

1 properties

JSON SCHEMA

OktaSignOnPolicyRule

3 properties

JSON SCHEMA

OktaSignOnPolicyRuleActions

1 properties

JSON SCHEMA

OktaSignOnPolicyRuleConditions

3 properties

JSON SCHEMA

OktaSignOnPolicyRuleSignonActions

6 properties

JSON SCHEMA

OpenIdConnectApplication

3 properties

JSON SCHEMA

OpenIdConnectApplicationConsentMethod

0 properties

JSON SCHEMA

OpenIdConnectApplicationIssuerMode

0 properties

JSON SCHEMA

OpenIdConnectApplicationSettings

1 properties

JSON SCHEMA

OpenIdConnectApplicationSettingsClient

16 properties

JSON SCHEMA

OpenIdConnectApplicationType

0 properties

JSON SCHEMA

OpenIdConnectRefreshTokenRotationType

0 properties

JSON SCHEMA

Org2OrgApplication

2 properties

JSON SCHEMA

Org2OrgApplicationSettings

1 properties

JSON SCHEMA

Org2OrgApplicationSettingsApp

3 properties

JSON SCHEMA

OrgContactType

0 properties

JSON SCHEMA

OrgContactTypeObj

2 properties

JSON SCHEMA

OrgContactUser

2 properties

JSON SCHEMA

OrgOktaCommunicationSetting

2 properties

JSON SCHEMA

OrgOktaSupportSetting

0 properties

JSON SCHEMA

OrgOktaSupportSettingsObj

3 properties

JSON SCHEMA

OrgPreferences

2 properties

JSON SCHEMA

OrgSetting

18 properties

JSON SCHEMA

PasswordCredential

3 properties

JSON SCHEMA

PasswordCredentialHash

5 properties

JSON SCHEMA

PasswordCredentialHashAlgorithm

0 properties

JSON SCHEMA

PasswordCredentialHook

1 properties

JSON SCHEMA

PasswordDictionary

1 properties

JSON SCHEMA

PasswordDictionaryCommon

1 properties

JSON SCHEMA

PasswordExpirationPolicyRuleCondition

2 properties

JSON SCHEMA

PasswordPolicy

2 properties

JSON SCHEMA

PasswordPolicyConditions

2 properties

JSON SCHEMA

PasswordPolicyDelegationSettings

1 properties

JSON SCHEMA

PasswordPolicyPasswordSettings

3 properties

JSON SCHEMA

PasswordPolicyPasswordSettingsAge

4 properties

JSON SCHEMA

PasswordPolicyPasswordSettingsLockout

4 properties

JSON SCHEMA

PasswordPolicyRecoveryEmail

2 properties

JSON SCHEMA

PasswordPolicyRecoveryEmailProperties

1 properties

JSON SCHEMA

PasswordPolicyRecoveryFactors

4 properties

JSON SCHEMA

PasswordPolicyRecoveryFactorSettings

1 properties

JSON SCHEMA

PasswordPolicyRecoveryQuestion

2 properties

JSON SCHEMA

PasswordPolicyRecoverySettings

1 properties

JSON SCHEMA

PasswordPolicyRule

3 properties

JSON SCHEMA

PasswordPolicyRuleAction

1 properties

JSON SCHEMA

PasswordPolicyRuleActions

3 properties

JSON SCHEMA

PasswordPolicyRuleConditions

2 properties

JSON SCHEMA

PasswordPolicySettings

3 properties

JSON SCHEMA

PasswordSettingObject

3 properties

JSON SCHEMA

PlatformConditionEvaluatorPlatform

2 properties

JSON SCHEMA

PlatformPolicyRuleCondition

2 properties

JSON SCHEMA

Policy

12 properties

JSON SCHEMA

PolicyAccountLink

2 properties

JSON SCHEMA

PolicyAccountLinkFilter

1 properties

JSON SCHEMA

PolicyAccountLinkFilterGroups

1 properties

JSON SCHEMA

PolicyNetworkCondition

3 properties

JSON SCHEMA

PolicyPeopleCondition

2 properties

JSON SCHEMA

PolicyRule

10 properties

JSON SCHEMA

PolicyRuleActions

6 properties

JSON SCHEMA

PolicyRuleActionsEnroll

1 properties

JSON SCHEMA

PolicyRuleActionsEnrollSelf

0 properties

JSON SCHEMA

PolicyRuleAuthContextCondition

1 properties

JSON SCHEMA

PolicyRuleConditions

21 properties

JSON SCHEMA

PolicySubject

5 properties

JSON SCHEMA

PolicySubjectMatchType

0 properties

JSON SCHEMA

PolicyType

0 properties

JSON SCHEMA

PolicyUserNameTemplate

1 properties

JSON SCHEMA

PossessionConstraint

4 properties

JSON SCHEMA

PreRegistrationInlineHook

1 properties

JSON SCHEMA

ProfileEnrollmentPolicy

0 properties

JSON SCHEMA

ProfileEnrollmentPolicyRule

2 properties

JSON SCHEMA

ProfileEnrollmentPolicyRuleAction

7 properties

JSON SCHEMA

ProfileEnrollmentPolicyRuleActions

1 properties

JSON SCHEMA

ProfileMapping

5 properties

JSON SCHEMA

ProfileMappingProperty

2 properties

JSON SCHEMA

ProfileMappingPropertyPushStatus

0 properties

JSON SCHEMA

ProfileMappingSource

4 properties

JSON SCHEMA

ProfileSettingObject

1 properties

JSON SCHEMA

Protocol

8 properties

JSON SCHEMA

ProtocolAlgorithms

2 properties

JSON SCHEMA

ProtocolAlgorithmType

1 properties

JSON SCHEMA

ProtocolAlgorithmTypeSignature

2 properties

JSON SCHEMA

ProtocolEndpoint

4 properties

JSON SCHEMA

ProtocolEndpoints

8 properties

JSON SCHEMA

ProtocolRelayState

1 properties

JSON SCHEMA

ProtocolRelayStateFormat

0 properties

JSON SCHEMA

ProtocolSettings

1 properties

JSON SCHEMA

Provisioning

4 properties

JSON SCHEMA

ProvisioningConditions

2 properties

JSON SCHEMA

ProvisioningConnection

3 properties

JSON SCHEMA

ProvisioningConnectionAuthScheme

0 properties

JSON SCHEMA

ProvisioningConnectionProfile

2 properties

JSON SCHEMA

ProvisioningConnectionRequest

1 properties

JSON SCHEMA

ProvisioningConnectionStatus

0 properties

JSON SCHEMA

ProvisioningDeprovisionedCondition

1 properties

JSON SCHEMA

ProvisioningGroups

4 properties

JSON SCHEMA

ProvisioningSuspendedCondition

1 properties

JSON SCHEMA

PushUserFactor

3 properties

JSON SCHEMA

PushUserFactorProfile

6 properties

JSON SCHEMA

RecoveryQuestionCredential

2 properties

JSON SCHEMA

RequiredEnum

0 properties

JSON SCHEMA

ResetPasswordToken

1 properties

JSON SCHEMA

ResponseLinks

1 properties

JSON SCHEMA

RiskPolicyRuleCondition

1 properties

JSON SCHEMA

RiskScorePolicyRuleCondition

1 properties

JSON SCHEMA

Role

10 properties

JSON SCHEMA

RoleAssignmentType

0 properties

JSON SCHEMA

RoleStatus

0 properties

JSON SCHEMA

RoleType

0 properties

JSON SCHEMA

SamlApplication

1 properties

JSON SCHEMA

SamlApplicationSettings

1 properties

JSON SCHEMA

SamlApplicationSettingsSignOn

27 properties

JSON SCHEMA

SamlAttributeStatement

6 properties

JSON SCHEMA

ScheduledUserLifecycleAction

1 properties

JSON SCHEMA

SchemeApplicationCredentials

5 properties

JSON SCHEMA

Scope

3 properties

JSON SCHEMA

ScopeType

0 properties

JSON SCHEMA

SecurePasswordStoreApplication

3 properties

JSON SCHEMA

SecurityQuestion

3 properties

JSON SCHEMA

SecurityQuestionUserFactor

1 properties

JSON SCHEMA

SecurityQuestionUserFactorProfile

3 properties

JSON SCHEMA

SeedEnum

0 properties

JSON SCHEMA

Session

11 properties

JSON SCHEMA

SessionAuthenticationMethod

0 properties

JSON SCHEMA

SessionIdentityProvider

2 properties

JSON SCHEMA

SessionIdentityProviderType

0 properties

JSON SCHEMA

SessionStatus

0 properties

JSON SCHEMA

SignInPageTouchPointVariant

0 properties

JSON SCHEMA

SignOnInlineHook

1 properties

JSON SCHEMA

SingleLogout

3 properties

JSON SCHEMA

SmsTemplate

7 properties

JSON SCHEMA

SmsTemplateTranslations

0 properties

JSON SCHEMA

SmsTemplateType

0 properties

JSON SCHEMA

SmsUserFactor

1 properties

JSON SCHEMA

SmsUserFactorProfile

1 properties

JSON SCHEMA

SocialAuthToken

6 properties

JSON SCHEMA

SpCertificate

1 properties

JSON SCHEMA

Subscription

4 properties

JSON SCHEMA

SubscriptionStatus

0 properties

JSON SCHEMA

SwaApplication

2 properties

JSON SCHEMA

SwaApplicationSettings

1 properties

JSON SCHEMA

SwaApplicationSettingsApplication

7 properties

JSON SCHEMA

SwaThreeFieldApplication

2 properties

JSON SCHEMA

SwaThreeFieldApplicationSettings

1 properties

JSON SCHEMA

TempPassword

1 properties

JSON SCHEMA

Theme

10 properties

JSON SCHEMA

ThemeResponse

13 properties

JSON SCHEMA

ThreatInsightConfiguration

5 properties

JSON SCHEMA

TokenUserFactor

1 properties

JSON SCHEMA

TokenUserFactorProfile

1 properties

JSON SCHEMA

TotpUserFactor

1 properties

JSON SCHEMA

TotpUserFactorProfile

1 properties

JSON SCHEMA

TrustedOrigin

10 properties

JSON SCHEMA

U2fUserFactor

1 properties

JSON SCHEMA

U2fUserFactorProfile

1 properties

JSON SCHEMA

Okta User

12 properties

JSON SCHEMA

UserActivationToken

2 properties

JSON SCHEMA

UserCondition

2 properties

JSON SCHEMA

UserCredentials

3 properties

JSON SCHEMA

UserFactor

9 properties

JSON SCHEMA

UserIdentifierPolicyRuleCondition

3 properties

JSON SCHEMA

UserIdentityProviderLinkRequest

1 properties

JSON SCHEMA

UserIdString

1 properties

JSON SCHEMA

UserNextLogin

0 properties

JSON SCHEMA

UserPolicyRuleCondition

6 properties

JSON SCHEMA

UserProfile

31 properties

JSON SCHEMA

UserSchema

10 properties

JSON SCHEMA

UserSchemaAttribute

18 properties

JSON SCHEMA

UserSchemaAttributeEnum

2 properties

JSON SCHEMA

UserSchemaAttributeItems

3 properties

JSON SCHEMA

UserSchemaAttributeMaster

2 properties

JSON SCHEMA

UserSchemaAttributeMasterPriority

2 properties

JSON SCHEMA

UserSchemaAttributeMasterType

0 properties

JSON SCHEMA

UserSchemaAttributePermission

2 properties

JSON SCHEMA

UserSchemaAttributeScope

0 properties

JSON SCHEMA

UserSchemaAttributeType

0 properties

JSON SCHEMA

UserSchemaAttributeUnion

0 properties

JSON SCHEMA

UserSchemaBase

4 properties

JSON SCHEMA

UserSchemaBaseProperties

31 properties

JSON SCHEMA

UserSchemaDefinitions

2 properties

JSON SCHEMA

UserSchemaProperties

1 properties

JSON SCHEMA

UserSchemaPropertiesProfile

1 properties

JSON SCHEMA

UserSchemaPropertiesProfileItem

1 properties

JSON SCHEMA

UserSchemaPublic

4 properties

JSON SCHEMA

UserStatus

0 properties

JSON SCHEMA

UserStatusPolicyRuleCondition

1 properties

JSON SCHEMA

UserType

10 properties

JSON SCHEMA

UserTypeCondition

2 properties

JSON SCHEMA

UserVerificationEnum

0 properties

JSON SCHEMA

VerificationMethod

5 properties

JSON SCHEMA

VerifyFactorRequest

8 properties

JSON SCHEMA

VerifyUserFactorResponse

5 properties

JSON SCHEMA

WebAuthnUserFactor

1 properties

JSON SCHEMA

WebAuthnUserFactorProfile

2 properties

JSON SCHEMA

WebUserFactor

1 properties

JSON SCHEMA

WebUserFactorProfile

1 properties

JSON SCHEMA

WsFederationApplication

2 properties

JSON SCHEMA

WsFederationApplicationSettings

1 properties

JSON SCHEMA

Scroll within the panel for all 462 ·

JSON Structure 2

JSON Structure captures the data shapes in a form built for tooling — a complement to JSON Schema that keeps the model machine-legible.

JSON Structure definitions describing this provider's data shapes.

Okta Structure

0 properties

JSON STRUCTURE

Okta User Structure

0 properties

JSON STRUCTURE

Examples 4

Real request and response payloads are what turn a spec from abstract into obvious — and they're one of the twelve things an agent needs to call an API correctly on the first try.

Example request and response payloads for these APIs.

Security Posture 4

Authentication, domain security, vulnerability disclosure, and trust-center signals — the evidence that a provider takes security seriously enough to document it. We profile it because you can't govern what you can't see.

Authentication, domain security, vulnerability disclosure, and trust-center signals.

Okta Authentication

apiKey · 1 scheme

SECURITY

Okta Domain Security

TLSv1.3 · HSTS · DMARC

SECURITY

Okta Vulnerability Disclosure

Bugcrowd · security.txt · contact published

SECURITY

Okta Trust Center

SOC 2, ISO 27001, ISO 27017, ISO 27018, PCI DSS, HIPAA, FedRAMP, GDPR, CSA STAR, FIPS 140

SECURITY

Agentic Access 1

An x-agentic-access contract marks which operations are safe for an agent to run on its own and which need a human in the loop. It is the difference between an API an agent can use and one it can use safely.

Recommended x-agentic-access execution contracts for AI agents.

Okta Agentic Access

341 operations · 210 acting · 15 human-in-the-loop

341 operations · 210 acting

AGENTIC

Resources

Every other property we hold for Okta — documentation, portals, status pages, policies, and corporate surface — grouped by the job it does, following the integrator's arc from getting started to running in production.

Get Started 4

Portal, sign-up, and the first successful call

Documentation 3

Reference material describing how the API behaves

Agent Surfaces 2

MCP servers, agent skills, and machine-readable catalogs

Operate 4

Status, limits, changes, and where to get help

Commercial 3

Pricing, plans, and the legal terms of use

Company 3

The organization behind the API

Other 4

Properties that don't map to a standard resource type

← All providers · Data indexed from github.com/api-evangelist/okta · machine-readable index on apis.io