API reference
The reference is generated at build time from the specification fragments each feature owns. Each section below is one fragment, rendered as written.
Fragments
- AUTH4D-1 API surface
- AUTH4D-2 shared API and protocol contracts
- AUTH4D-3 D1 persistence boundary
- AUTH4D-4 runtime boundary
- AUTH4D-5 signing and protected-secret behavior
- AUTH4D-7: Structured logs and audit records
- AUTH4D-8 tenant and application policy
- AUTH4D-9 identity and user lifecycle behavior
- AUTH4D-10 — Transactional email delivery
- AUTH4D-11 sessions and refresh behavior
- AUTH4D-12 OAuth authorization code and OIDC endpoints
- AUTH4D-13 email-code authentication
- AUTH4D-14 Discord social authentication
- AUTH4D-15 guest authentication and account upgrades
- AUTH4D-16 native device authorization
- AUTH4D-17 console sign-in and management authentication
- AUTH4D-18 project and application management
- AUTH4D-19 user, session and audit management
- AUTH4D-20 developer-console shell
- AUTH4D-21 project onboarding and application configuration screens
- AUTH4D-22 console operations screens
- AUTH4D-23 hosted login and device approval pages
- AUTH4D-24 TypeScript browser SDK
- AUTH4D-25 TypeScript server token verification SDK
- AUTH4D-27 retention and deferred data deletion
- AUTH4D-28 public website and documentation
- AUTH4D-29 cross-stack verification and release evidence
- Deployed environments and origins
Source: docs/api-spec. Run pnpm api-spec:generate for the same fragments combined into one Markdown file.