API reference

The reference is generated at build time from the specification fragments each feature owns. Each section below is one fragment, rendered as written.

Fragments

  1. AUTH4D-1 API surface
  2. AUTH4D-2 shared API and protocol contracts
  3. AUTH4D-3 D1 persistence boundary
  4. AUTH4D-4 runtime boundary
  5. AUTH4D-5 signing and protected-secret behavior
  6. AUTH4D-7: Structured logs and audit records
  7. AUTH4D-8 tenant and application policy
  8. AUTH4D-9 identity and user lifecycle behavior
  9. AUTH4D-10 — Transactional email delivery
  10. AUTH4D-11 sessions and refresh behavior
  11. AUTH4D-12 OAuth authorization code and OIDC endpoints
  12. AUTH4D-13 email-code authentication
  13. AUTH4D-14 Discord social authentication
  14. AUTH4D-15 guest authentication and account upgrades
  15. AUTH4D-16 native device authorization
  16. AUTH4D-17 console sign-in and management authentication
  17. AUTH4D-18 project and application management
  18. AUTH4D-19 user, session and audit management
  19. AUTH4D-20 developer-console shell
  20. AUTH4D-21 project onboarding and application configuration screens
  21. AUTH4D-22 console operations screens
  22. AUTH4D-23 hosted login and device approval pages
  23. AUTH4D-24 TypeScript browser SDK
  24. AUTH4D-25 TypeScript server token verification SDK
  25. AUTH4D-27 retention and deferred data deletion
  26. AUTH4D-28 public website and documentation
  27. AUTH4D-29 cross-stack verification and release evidence
  28. Deployed environments and origins

Source: docs/api-spec. Run pnpm api-spec:generate for the same fragments combined into one Markdown file.