Can AI agents automate Maskinporten?
Digitaliseringsdirektoratet (Digdir) · saas · identitygovernmentpublic-sector
Maskinporten is automatable today as Digdir's national machine-to-machine OAuth 2.0 authorization server, not as ID-porten, Ansattporten, Altinn, or HelseID. A pre-registered client signs a JWT-bearer grant with a Norwegian virksomhetssertifikat or a pre-registered asymmetric key, posts it to /token as grant_type urn:ietf:params:oauth:grant-type:jwt-bearer, and receives a self-contained JWT access token bound to the consumer organisation number and requested scopes. Client authentication at the token endpoint is private_key_jwt only; client_secret is not accepted. API providers define scopes and grant them to organisation numbers through Samarbeidsportalen or the self-service API. Consumers must sign Digdir bruksvilkår and hold a virksomhetssertifikat. API-provider use is invoiced; becoming a consumer is cost-free. This record is the M2M issuer. ID-porten login, Ansattporten representation, Altinn apps, and HelseID are outside the product boundary. Vendor documentation does not settle first-party MCP ownership. No official SDK, general CLI, or computer-use probe was established.
Best path today: api · Overall automatability: 7/10
Modalities
| Modality | Status | Detail |
|---|---|---|
| API | yes | oauth2jwt-bearerprivate-key-jwt coverage: partial · docs |
| SDK | unknown | official: unknown |
| MCP | unknown | verdict: unknown |
| Integrations | unknown | |
| CLI | unknown | |
| Extensibility | yes | oauth2-clientself-service-api webhooks: unknown |
| Data access | export: access-token · import: unknown | |
| RPA / UI automation | unknown | web-dom No repeatable UI probe was run. Maskinporten is a machine-to-machine OAuth 2.0 issuer, not an application to drive. The documented path is a pre-registered client posting a JWT-bearer grant to /token. Samarbeidsportalen self-service is a web console for client and scope administration, not the runtime integration surface.
|
| Computer use | unknown | measured verdicts only — "unknown" means not yet probed by us |
Scores
| api | mcp | integrations | cli | rpa | computer use | overall |
|---|---|---|---|---|---|---|
| 7 | — | — | — | — | — | 7 |
Evidence
| Fact | Tier | Source | Date |
|---|---|---|---|
homepage | declared | source | 2026-09-02 |
vendor | declared | source | 2026-09-02 |
license | declared | source | 2026-09-02 |
modalities.api.exists | declared | source | 2026-09-02 |
modalities.api.kinds[0] | declared | source | 2026-09-02 |
modalities.api.auth[0] | declared | source | 2026-09-02 |
modalities.api.auth[1] | declared | source | 2026-09-02 |
modalities.api.coverage | declared | source | 2026-09-02 |
modalities.api.docs | declared | source | 2026-09-02 |
modalities.extensibility.scripting[0] | declared | source | 2026-09-02 |
modalities.extensibility.scripting[1] | declared | source | 2026-09-02 |
modalities.data_access.export | declared | source | 2026-09-02 |
modalities.agent_docs.llms_txt | scraped | source | 2026-09-02 |
verdict.scores.api | declared | source | 2026-09-02 |
freshness.watch[0].url | declared | source | 2026-09-02 |
freshness.watch[1].url | declared | source | 2026-09-02 |
freshness.watch[2].url | declared | source | 2026-09-02 |
freshness.watch[3].url | declared | source | 2026-09-02 |
Related tools
Other products in this database that share a category with Maskinporten.
Last verified 2026-09-02 · volatility medium · JSON record