Apps
Tokens for your services.
Your backend services and jobs call your APIs with tokens of their own. No person signs in, and no consent stands in for your decision.
Built
Only what you granted
A machine app gets tokens only for an API you gave it scopes of. No grant, no access.
One token, one API
Each token is that API’s JWT with the app as its subject. No refresh or ID token comes with it.
Never counted as users
Machine tokens are recorded for your audit trail, never as monthly active users.
Read next
Want it before it is finished?
Tell us what you are building and which sign-in your users need.