{
 "categories": [
  "identity",
  "developer-tools"
 ],
 "deployment": "saas",
 "evidence": [
  {
   "date": "2026-09-01",
   "fact": "homepage",
   "note": "Auth0 presents itself as Okta's customer-identity platform for user and AI-agent authentication, B2C apps, B2B SaaS, and machine identities, and invites developers to start building for free.",
   "source": "https://auth0.com/",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "vendor",
   "note": "Okta's company page states that Okta delivers Workforce governance on the Okta Platform and customer identity on the Auth0 Platform. auth0.com/about redirected here.",
   "source": "https://www.okta.com/company/",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "license",
   "note": "Auth0 publishes a Free plan at $0 per month for up to 25,000 monthly active users, plus paid Essentials, Professional, and Enterprise plans billed by MAU.",
   "source": "https://auth0.com/pricing",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.api.exists",
   "note": "Auth0 documents Management API v2 as the administrative HTTPS JSON API for trusted back-end callers. Example path is https://{tenant}/api/v2/users.",
   "source": "https://auth0.com/docs/api/management/v2",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.api.kinds[0]",
   "note": "The documented interface is a JSON REST API. Requests use Content-Type application/json. Examples use GET, POST, PUT, PATCH, and DELETE against /api/v2/ paths.",
   "source": "https://auth0.com/docs/api/management/v2",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.api.auth[0]",
   "note": "Production tokens are obtained with OAuth 2.0 grant_type=client_credentials against https://{tenant}/oauth/token, using a Machine-to-Machine application's client_id and client_secret and audience https://{tenant}/api/v2/. The token is sent as Authorization: Bearer.",
   "source": "https://auth0.com/docs/secure/tokens/access-tokens/management-api-access-tokens/get-management-api-access-tokens-for-production",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.api.coverage",
   "note": "Auth0 says that generally anything done in the Dashboard can be done through this API, and documents scoped JWT access. Public Cloud pages max out at 50 results. This is the tenant admin surface, not the Authentication API used by front-ends.",
   "source": "https://auth0.com/docs/api/management/v2",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.exists",
   "note": "Auth0 documents official SDK libraries including a Management API SDK Libraries section for programmatic administrative tasks.",
   "source": "https://auth0.com/docs/libraries",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[0]",
   "note": "The vendor node-auth0 README documents ManagementClient for the Auth0 Management API, including client-credentials token handling.",
   "source": "https://github.com/auth0/node-auth0",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[1]",
   "note": "The vendor auth0-python README documents ManagementClient as the recommended Management API client, with automatic client-credentials token management.",
   "source": "https://github.com/auth0/auth0-python",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[2]",
   "note": "The vendor auth0.net README describes a .NET client for the Authentication and Management APIs and documents Install-Package Auth0.ManagementApi.",
   "source": "https://github.com/auth0/auth0.net",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[3]",
   "note": "The vendor auth0-java README describes a Java client library for the Auth0 Authentication and Management APIs.",
   "source": "https://github.com/auth0/auth0-java",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[4]",
   "note": "The vendor go-auth0 README titles the project as a Go SDK for the Auth0 Management API and documents a Management API client.",
   "source": "https://github.com/auth0/go-auth0",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[5]",
   "note": "Auth0 documents the official PHP SDK ManagementClient for tenant operations such as users, applications, and logs.",
   "source": "https://auth0.com/docs/libraries/auth0-php/using-the-management-api-with-auth0-php",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.sdk.languages[6]",
   "note": "The vendor ruby-auth0 README describes a Ruby API client and points to an auto-generated reference for Management API methods.",
   "source": "https://github.com/auth0/ruby-auth0",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.mcp.first_party",
   "note": "Auth0 documents a first-party MCP server installed with npx @auth0/auth0-mcp-server. It uses OAuth 2.0 device authorization, stores credentials in the system keychain, and exposes management tools such as auth0_create_action.",
   "source": "https://auth0.com/docs/get-started/auth0-mcp-server/getting-started-with-auth0-mcp-server",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.integrations.zapier",
   "note": "Zapier's public app directory returned 404 for /apps/auth0 and /apps/auth0/integrations on 2026-09-01.",
   "source": "https://zapier.com/apps/auth0/integrations",
   "tier": "scraped"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.integrations.make",
   "note": "Make publishes an Auth0 app with user modules (create, delete, get, search, update, watch) plus Make an API Call. The catalogue page warns that its prose is AI-generated from Auth0 docs.",
   "source": "https://apps.make.com/auth0",
   "tier": "scraped"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.integrations.power_automate",
   "note": "Microsoft's official connector documentation path /connectors/auth0/ returned 404 on 2026-09-01. /connectors/auth0management/ also returned 404.",
   "source": "https://learn.microsoft.com/en-us/connectors/auth0/",
   "tier": "scraped"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.integrations.n8n",
   "note": "n8n documents Auth0 Management credentials (domain, client ID, client secret) for custom HTTP Request calls. It is a credential-only node, not a built-in action node. The app-node path n8n-nodes-base.auth0 returned 404.",
   "source": "https://docs.n8n.io/integrations/builtin/credentials/auth0management/",
   "tier": "scraped"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.cli.exists",
   "note": "Auth0 documents Auth0 CLI as an official command-line tool with direct Management API access, user or machine-to-machine login, CRUD for apps, APIs, and users, and --json output for scripts.",
   "source": "https://auth0.com/docs/deploy-monitor/auth0-cli",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.extensibility.scripting[0]",
   "note": "Auth0 Actions are tenant-hosted JavaScript functions bound to flows such as Login / Post Login, with secrets, npm dependencies, draft/test/deploy, and execution recorded in tenant logs.",
   "source": "https://auth0.com/docs/customize/actions/write-your-first-action",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.extensibility.webhooks",
   "note": "Custom log streams deliver tenant log events as HTTP POST requests to a customer HTTPS payload URL, with optional Authorization token and JSON lines, arrays, or objects.",
   "source": "https://auth0.com/docs/customize/log-streams/custom-log-streams",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.data_access.export[0]",
   "note": "Bulk user export jobs write JSON-compatible NDJSON via the Dashboard or POST /api/v2/jobs/users-exports.",
   "source": "https://auth0.com/docs/manage-users/user-migration/bulk-user-exports",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.data_access.export[1]",
   "note": "The same export job supports CSV. CSV exports are limited to 30 fields and cannot include app_metadata or user_metadata as single objects.",
   "source": "https://auth0.com/docs/manage-users/user-migration/bulk-user-exports",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.data_access.export[2]",
   "note": "Deploy CLI export writes tenant configuration with a0deploy export --format=yaml --output_folder=local.",
   "source": "https://auth0.com/docs/deploy-monitor/deploy-cli-tool",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.data_access.import[0]",
   "note": "Bulk user import accepts a JSON user file (500 KB limit) through the Dashboard or POST /api/v2/jobs/users-imports.",
   "source": "https://auth0.com/docs/manage-users/user-migration/bulk-user-imports",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.data_access.import[1]",
   "note": "Deploy CLI import pushes local YAML or directory JSON into a tenant with a0deploy import.",
   "source": "https://auth0.com/docs/deploy-monitor/deploy-cli-tool",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "modalities.agent_docs.llms_txt",
   "note": "https://auth0.com/llms.txt returns a first-party agent index covering docs, changelog, pricing, product pages, the MCP server, and Auth0 CLI. https://auth0.com/docs/llms.txt also returned 200.",
   "source": "https://auth0.com/llms.txt",
   "tier": "scraped"
  },
  {
   "date": "2026-09-01",
   "fact": "verdict.scores.api",
   "note": "Management API v2 is documented, read/write for tenant admin resources, and paired with official SDKs, OAuth client credentials, CLI, and log-stream webhooks. Public Cloud pagination of 50 and plan-based token quotas keep it in the broad-production tier rather than unusual completeness.",
   "source": "https://auth0.com/docs/api/management/v2",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "verdict.scores.mcp",
   "note": "The official server is maintained (push 2026-08-28; npm 0.1.0-beta.19). Tools cover applications, APIs, grants, Actions, logs, and Forms. The README marks it beta, AS IS, and not recommended for production, which is a limited vendor preview rather than production-grade official coverage.",
   "source": "https://github.com/auth0/auth0-mcp-server",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "verdict.scores.integrations",
   "note": "Make lists user lifecycle modules. n8n is credential-only HTTP. Zapier and Power Automate official connector paths returned 404. That is useful people-operations coverage with material gaps.",
   "source": "https://apps.make.com/auth0",
   "tier": "scraped"
  },
  {
   "date": "2026-09-01",
   "fact": "verdict.scores.cli",
   "note": "Auth0 CLI is official, supports machine login, --json, --no-input, and --agent-mode, and covers apps, APIs, users, and a raw auth0 api mode. Deploy CLI adds declarative YAML import/export. That is a broad maintained CLI path wrapping the same Management API.",
   "source": "https://auth0.com/docs/deploy-monitor/auth0-cli",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "freshness.watch[0].url",
   "note": "Opened and verified as Auth0's current MCP overview, including device authorization, keychain storage, and Claude Desktop, Cursor, and Windsurf clients.",
   "source": "https://auth0.com/docs/get-started/auth0-mcp-server",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "freshness.watch[1].url",
   "note": "Opened the auth0/auth0-mcp-server repository. It is MIT, not archived, last pushed 2026-08-28, and carries a beta / not-for-production caution.",
   "source": "https://github.com/auth0/auth0-mcp-server",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "freshness.watch[2].url",
   "note": "Opened and verified as Auth0's current Management API v2 reference, including Bearer JWT auth and /api/v2/ pagination.",
   "source": "https://auth0.com/docs/api/management/v2",
   "tier": "declared"
  },
  {
   "date": "2026-09-01",
   "fact": "freshness.watch[3].url",
   "note": "Opened and verified as Auth0's current CLI guide, including Homebrew/Linux/Windows install, user and M2M login, --json, and the comparison with Deploy CLI.",
   "source": "https://auth0.com/docs/deploy-monitor/auth0-cli",
   "tier": "declared"
  }
 ],
 "freshness": {
  "last_verified": "2026-09-01",
  "volatility": "high",
  "watch": [
   {
    "type": "mcp",
    "url": "https://auth0.com/docs/get-started/auth0-mcp-server"
   },
   {
    "type": "repo",
    "url": "https://github.com/auth0/auth0-mcp-server"
   },
   {
    "type": "docs",
    "url": "https://auth0.com/docs/api/management/v2"
   },
   {
    "type": "docs",
    "url": "https://auth0.com/docs/deploy-monitor/auth0-cli"
   }
  ]
 },
 "homepage": "https://auth0.com/",
 "id": "auth0",
 "license": "freemium",
 "modalities": {
  "agent_docs": {
   "llms_txt": true
  },
  "api": {
   "auth": [
    "oauth2"
   ],
   "coverage": "partial",
   "docs": "https://auth0.com/docs/api/management/v2",
   "exists": true,
   "kinds": [
    "rest"
   ]
  },
  "cli": {
   "exists": true
  },
  "computer_use": {
   "issues": [],
   "viability": "unknown"
  },
  "data_access": {
   "export": [
    "json",
    "csv",
    "yaml"
   ],
   "import": [
    "json",
    "yaml"
   ]
  },
  "extensibility": {
   "scripting": [
    "actions"
   ],
   "webhooks": true
  },
  "integrations": {
   "make": true,
   "n8n": true,
   "power_automate": false,
   "zapier": false
  },
  "mcp": {
   "first_party": true,
   "third_party": [],
   "verdict": "official"
  },
  "rpa": {
   "drivability": "unknown",
   "notes": "No repeatable UI probe was run. The Management API, Auth0 CLI, Deploy CLI, log-stream webhooks, and the first-party MCP server cover tenant administration without browser control.\n",
   "ui_stack": [
    "web-dom"
   ],
   "vendor_support": []
  },
  "sdk": {
   "exists": true,
   "languages": [
    "javascript",
    "python",
    "dotnet",
    "java",
    "go",
    "php",
    "ruby"
   ],
   "official": true
  }
 },
 "name": "Auth0",
 "platforms": [
  "web"
 ],
 "related": {
  "alternatives": [
   "okta",
   "microsoft-entra-id",
   "id-porten",
   "feide"
  ],
  "our_products": []
 },
 "schema_version": 1,
 "score_version": 1,
 "status": "active",
 "vendor": "Okta",
 "verdict": {
  "best_path": "api",
  "scores": {
   "api": 8,
   "cli": 8,
   "computer_use": null,
   "integrations": 5,
   "mcp": 6,
   "overall": 8,
   "rpa": null
  },
  "summary": "Auth0 is automatable today through the Management REST API at https://{tenant}/api/v2/. The documented interface is JSON over HTTPS. Production callers obtain a scoped Bearer JWT with the OAuth 2.0 client-credentials grant against https://{tenant}/oauth/token and the Management API audience https://{tenant}/api/v2/. Official Management SDKs exist for Node.js, Python, .NET, Java, Go, PHP, and Ruby. Auth0 CLI wraps the same API with --json, --no-input, and --agent-mode, and accepts machine login with client credentials or private-key JWT. Deploy CLI exports and imports tenant configuration as YAML or directory JSON. A first-party MCP server is published as npx @auth0/auth0-mcp-server and documented for Claude Desktop, Cursor, and Windsurf. The vendor repository marks it beta and not recommended for production, and device authorization is not supported for private-cloud tenants. MCP tools cover applications, resource servers, client grants, Actions, logs, and Forms, plus onboarding helpers; the published tool list does not include user management. Custom log streams POST tenant events to an HTTPS webhook. Make lists user modules. n8n publishes Auth0 Management credentials for the HTTP Request node, not a full action node. Zapier /apps/auth0 and Microsoft's /connectors/auth0/ returned 404 on 2026-09-01. This record is Auth0 customer identity only; Okta Workforce Identity is outside the boundary. Computer-use viability is unassessed. API and CLI both score 8; API is the best path because it is the machine contract and MCP remains a vendor-declared beta.\n"
 }
}