SSO Developer Console
Sign in with your SSO account to create and manage OAuth 2.0 & OpenID Connect applications, configure redirect URIs, inspect real-time JWT claims, and access the live integration sandbox.
Client Management
Register Public SPAs with PKCE (S256), Confidential Web Apps with hashed secrets, or Machine-to-Machine backend daemons in seconds.
Dynamic Code Quickstart
Auto-generate pre-filled copy-paste integration code and .env snippets for React, Next.js 15, FastAPI, Node.js, and cURL.
Live In-Browser Sandbox
Test authorization popups, validate redirect callbacks, and inspect real-time decoded JWT claims directly in your browser.
Includes up to 5 registered applications, 10,000 Monthly Active Users, and 120 req/min token requests. No credit card required.
Developer Console
Manage OAuth 2.0 / OIDC credentials, test real-time authentication, and monitor API quotas.
Registered Applications
Manage OAuth 2.0 / OpenID Connect client credentials and redirect URIs.
Dynamic Integration Quickstart
Select your client and preferred language. The code snippets below automatically populate with your live credentials.
# Loading environment variables... // Select framework above... In-Browser Test Sandbox
Launch an authorization flow in a popup window to test your client registration and view decoded token claims.
{} Developer Quotas & Security Rules
Real-time usage telemetry, token rate limits, and domain trust verification for your account.
Domain Ownership Verification
Verify your production domain to remove the "Unverified Developer" consent notice and unlock production rate limits.
Security & Abuse Guidelines
- ✓ Strict Redirects: No wildcard domains or paths are permitted. Production URLs must use HTTPS.
- ✓ Single-Use Auth Codes: Authorization codes expire in 10 minutes and can only be exchanged once.
- ✓ Localhost Immunity: Development URLs (
http://localhost:*) are exempt from domain verification checks. - ✓ Rate Limit Enforcement: Token endpoint rate limit is 120 req/min (burst capacity: 300 req/min). HTTP 429 returns with Retry-After header.