Sign-in for your site's visitors

Registration, login, verification and reset — served from your project, stored in your database.

The auth schemas module

What you get

  • Registration, login, email verification, password reset and change — a complete public API
  • Accounts stored in your database with bcrypt-hashed passwords, never returned by any API
  • CORS locked to your application's origin, not open to the world
  • 7-day tokens bound to your project and workspace — tokens from anywhere else fail
  • Endpoints can answer personally: filter a query by the caller and each user sees only their own records

Your customers, not our users

End users belong to your site and live in your database, completely separate from your team's dashboard accounts. Verification and reset emails send through your own SMTP, from your address. The dashboard shows accounts and verification state when your team needs to help someone.

Try it with your own data

A workspace takes about a minute.

Create your workspace