Access Pass
Digital pass and ticket management in cidaas — concepts, use cases, and API reference for passes, templates, and layouts.
Digital pass and ticket management in cidaas — concepts, use cases, and API reference for passes, templates, and layouts.
Authorize service-to-service and partner API access with Access Pass Personal Access Tokens (PAT) instead of JWTs.
Manage OAuth2/OIDC applications and clients in cidaas, including app settings, advanced configuration, and API references.
cidaas provides fine-grained authorization beyond OAuth2 scopes and group/role restrictions through the OpenID AuthZEN standard. AuthZEN separates policy administration from policy decision and supports attribute-based policies (Rego/OPA), external data via Policy Information Points (PIP), and Relationship-Based Access Control (ReBAC).
Overview
Overview
Learn how to rotate client secrets and AppKeys securely in cidaas.
Overview
Overview
Benefits
Group Role Restriction controls who can log in to an application by verifying group membership and roles during authentication. When verification succeeds, selected hints embed the matching groups and roles into the JWT access token so your application can see why access was granted — without loading every group the user belongs to.
cidaas provides a comprehensive set of webhook events that you can subscribe to for real-time notifications about various activities in your system.
Permission management may sound complex, but in simple terms, it is security for your resources.
cidaas lets you get data from your customers each time they interact with your product instead of requesting their profile information all at once during registration.
cidaas ReBAC uses Relation Store to store authorization graphs: object types, relations, permissions, and relationship tuples.
Overview
Remote Fields is an advanced feature in cidaas that allows field values to be dynamically fetched from an external API during token generation or user profile retrieval.
Learn how scopes work in OAuth2/OIDC and how to configure and manage scopes and scope groups in cidaas.
---
Learn how to update user profile information in cidaas, including field permissions, instant email/mobile changes, and API usage.
Configure what information users provide during registration and how it's stored.
Automatically send verification reminders and manage user accounts based on verification status.
Configure registration and login field profiles in cidaas (User Setup), link them to applications via user_setup_id, and manage profiles through Trustdesk or the User Setup API.
Learn how to manage user status in cidaas, including status values, transitions, API usage, email templates, and webhooks.
Benefits
Today's competitive landscape calls for better security implementation for user accounts. With customers becoming more demanding and applications becoming critical, a seasoned and reliable CIMS helps manage both optimally.