Identity

Sign in with YAMAG

One account for your users, a standard sign-in (OpenID Connect) for your applications. You host neither passwords nor sign-up forms.

For your users

One account for every application offering “Sign in with YAMAG”, with e-mail verification, password reset and protection against repeated attempts. On first sign-in, users see what your application asks for and give their consent.

For your developers

A standard OIDC provider: authorization code with PKCE, signed tokens, single logout. Every sign-in is counted in your statistics, per application.

Personal data

Your application only receives the name and e-mail, with the user's consent. YAMAG never shares the password or the user's other applications. Sign-in statistics only hold a pseudonymous id and a truncated IP address.

Enable it in three steps

  1. Declare the application

    In the console, open your application (or declare it).

  2. Turn on sign-in

    Choose the type (server or browser), enter your redirect URLs, copy the secret.

  3. Plug in your OIDC library

    Use the issuer and client ID shown: Spring Security, Auth.js, oidc-client, AppAuth…

The button

Show this button on your sign-in page; it starts the OIDC sign-in with YAMAG.

Sign in with YAMAG

Endpoints

issuerhttps://auth.yamag-tech.com/realms/yamag-id
discoveryhttps://auth.yamag-tech.com/realms/yamag-id/.well-known/openid-configuration
authorizationhttps://auth.yamag-tech.com/realms/yamag-id/protocol/openid-connect/auth
tokenhttps://auth.yamag-tech.com/realms/yamag-id/protocol/openid-connect/token
userinfohttps://auth.yamag-tech.com/realms/yamag-id/protocol/openid-connect/userinfo
jwkshttps://auth.yamag-tech.com/realms/yamag-id/protocol/openid-connect/certs
logouthttps://auth.yamag-tech.com/realms/yamag-id/protocol/openid-connect/logout