Skip to content
AXUS IDAXUS ID
Docs/Start building
The developer guide

One identity.
Every app you build.

Add “Continue with AXUS ID” to your app. Follow the code, bring your own auth library, or give your AI agent a precise integration brief. Start here, ship with confidence.

OAuth 2.0 + OpenID ConnectPKCE requiredNo client secret

Your app. Your starting point.

Fill in your public settings to tailor the configuration.

Client ID · your AUID

Register this exact callback URL in the developer console. Use HTTPS in production.

.env.local · in your app
AXUS_ISSUER="https://axusid-website.vercel.app"
AXUS_CLIENT_ID="YOUR_AUID"
AXUS_REDIRECT_URI="http://localhost:3000/api/auth/axus/callback"

Sign-in and consent in five steps.

Your app hands off authentication to AXUS ID, then creates its own session when the user returns.

  1. 01

    Register

    Save your callback URL and copy your account’s AUID.

  2. 02

    Redirect

    Send a fresh PKCE challenge and the required, optional and conditional scopes.

  3. 03

    Review access

    The user reviews access. Missing mandatory permissions stop authorization.

  4. 04

    Verify

    Exchange the code, verify identity and inspect the approved scope set.

  5. 05

    Sign in

    Find or create your local user and start your app’s session.

Two APIs. Two jobs.

Sign-in uses OAuth 2.0 and OpenID Connect. AXUS ID extends authorization with optional and conditional permission lists when your app needs API access. Everything else (users, usernames, variations, passkeys, permissions, tokens) is GraphQL on the engine.

Go straight to what you need.