canonical: https://jentic.com/apis/stytch.com/stytch

# Stytch API

Stytch provides authentication infrastructure. The API supports magic links, OTPs, OAuth, TOTP, sessions, users, passwords, WebAuthn, and connected apps. The API exposes 29 endpoints secured with basic authentication.

## For AI agents

Programmatically create user, get user. Covers 29 operations with basic authentication.

## Scope

Does not handle payments, communications, or crm - use for identity and authentication only.

## Capabilities

- Create user
- Get user
- Update user
- Delete user
- Search users
- Send magic link email
- Login or create by magic link

## Use cases

### Identity and Authentication Operations

Use the Stytch API to perform identity auth operations programmatically. The API provides 29 endpoints covering core functionality including create user, get user, update user.

Example prompt: Call POST /v1/users to create user

### Automated Connected Apps Management

Automate connected apps operations by combining multiple Stytch API endpoints. Agents can get user and then update user in a single workflow.

Example prompt: Call GET /v1/users/{user_id} to get user, then verify the result

### AI Agent Integration via Jentic

AI agents discover and call Stytch API endpoints through Jentic without managing credentials directly. An agent searches for the required operation by intent, receives the matching endpoint schema, and executes the call with Jentic-managed authentication. This eliminates the need to read API documentation or handle basic tokens manually.

Example prompt: Search Jentic for 'create user', load the operation schema, and execute with Jentic-managed credentials

## Key endpoints

| Method | Path | Description |
| --- | --- | --- |
| POST | /v1/users | Create user |
| GET | /v1/users/{user_id} | Get user |
| PUT | /v1/users/{user_id} | Update user |
| DELETE | /v1/users/{user_id} | Delete user |
| POST | /v1/users/search | Search users |
| POST | /v1/magic_links/email/send | Send magic link email |
| POST | /v1/magic_links/email/login_or_create | Login or create by magic link |
| POST | /v1/magic_links/authenticate | Authenticate magic link token |

## Key resources

- **Connected Apps** — Operations related to Connected Apps
- **Magic Links** — Operations related to Magic Links
- **OAuth** — Operations related to OAuth
- **OTP** — Operations related to OTP
- **Passwords** — Operations related to Passwords

## Why Jentic

- **Setup:** Wiring the Stytch API by hand means setting up its HTTP basic auth, keeping the live and test hosts straight, and threading magic-link tokens through your flows yourself. Through Jentic you install once, import the Stytch API from the API Directory, store the credentials once, and your agent calls it.
- **Permission scoping:** Stytch puts the user id in the URL path (/v1/users/{user_id}), so a rule can pin your agent to one user: it can read and update that user and nothing else. You choose the operations it may call, so destructive ones like deleting a user are not included unless you add them.
- **Credential handling:** Your Stytch basic credentials are stored once, encrypted, by your own Jentic One instance and injected at execution time. They never enter the agent's prompt, logs, or context.
- **Discovery method:** Agents search Jentic by intent such as 'create a user' or 'send a magic link', and Jentic returns the matching Stytch operation with its input schema so the agent calls the right endpoint without browsing the reference docs.

## Related APIs

- **Auth0** — Alternative identity auth API
- **Okta** — Alternative identity auth API

## FAQ

### What authentication does the Stytch API use?

The Stytch API uses HTTP Basic authentication with username and password. Through Jentic, these credentials are stored encrypted in your Jentic One instance and injected at execution time, so raw secrets never enter the agent context.

### Can I create user with the Stytch API?

Yes. Use the POST /v1/users endpoint. The API returns structured JSON responses that agents can parse and act on directly.

### What are the rate limits for the Stytch API?

Rate limits are not specified in the OpenAPI spec. Check the vendor documentation for current limits. Through Jentic, rate limiting is handled automatically with retry logic built into the execution layer.

### How do I create user through Jentic?

Install the Jentic SDK with pip install jentic, authenticate through Jentic One, the self-hosted execution layer, then search for 'create user'. Jentic returns the matching Stytch API operation with its input schema. Load the schema and execute the call - credentials are injected automatically.

### How many endpoints does the Stytch API have?

The Stytch API exposes 29 endpoints covering connected apps, magic links, oauth operations.

### Can I limit what my agent is allowed to do with the Stytch API?

Yes. Jentic One is self-hosted, so your own rules decide which Stytch operations and credentials your agent may use. Because Stytch puts the user id in the URL path (/v1/users/{user_id}), a rule can pin the agent to a single user so it can only get and update that user and nothing else. You pick the operations it can call, so destructive ones like Delete user (DELETE /v1/users/{user_id}) stay off the list unless you explicitly add them.
