The Auth Stack for your SaaS
The Auth Stack for your SaaS
Add auth to your B2B SaaS application without building from scratch.
Drop in a modular capability like MCP Auth, Single Sign-On, or SCIM alongside your existing system, or adopt Scalekit as your full identity layer for users, sessions, organizations, and roles.
Building auth from scratch? Start with SaaS User Management. Adding SSO, SCIM, or MCP Auth to an existing system? Use Modular Auth.
2 steps · ~5 minutes · works with any AI coding agent
# options: full-stack-auth, agent-auth, mcp-auth, modular-sso, modular-scimclaude plugin marketplace add scalekit-inc/claude-code-authstack && claude plugin install full-stack-auth@scalekit-auth-stackNow ask your agent to implement Scalekit auth in natural language. See example starting prompts →
curl -fsSL https://raw.githubusercontent.com/scalekit-inc/codex-authstack/main/install.sh | bashStep 2 — Restart Codex, open Plugin Directory, select Scalekit Auth Stack, and enable your auth plugin.
Now ask your agent to implement Scalekit auth in natural language. See example starting prompts →
copilot plugin marketplace add scalekit-inc/github-copilot-authstack# options: full-stack-auth, agent-auth, mcp-auth, modular-sso, modular-scimcopilot plugin install full-stack-auth@scalekit-auth-stackNow ask your agent to implement Scalekit auth in natural language. See example starting prompts →
The Scalekit Auth Stack is pending Cursor Marketplace review. Install it locally in Cursor:
curl -fsSL https://raw.githubusercontent.com/scalekit-inc/cursor-authstack/main/install.sh | bashStep 2 — Restart Cursor, open Settings > Cursor Settings > Plugins, and enable your auth plugin.
Now ask your agent to implement Scalekit auth in natural language. See example starting prompts →
Works with OpenCode, Windsurf, Cline, Gemini CLI, Codex, and 35+ more agents via the Vercel Skills CLI.
npx skills add scalekit-inc/skills --listnpx skills add scalekit-inc/skills --skill adding-mcp-oauthNow ask your agent to implement Scalekit auth in natural language. See example starting prompts →
Need help? Join the developer community or browse the guides.
Modular auth
Add specific auth capabilities like MCP Auth, SSO, or SCIM without replacing your existing system.
MCP Auth
Add OAuth 2.1 authorization to your remote MCP server with Dynamic Client Registration and short-lived tokens
Single Sign-On
Let enterprise users sign in through their company’s identity provider like Okta, Microsoft Entra, Google, and more
SCIM Provisioning
Automatically sync users, roles, and groups when IT admins add or remove people in Okta or Microsoft Entra
SaaS user management
Use Scalekit as your full identity layer to manage users, organizations, sessions, roles, and application access.
Quickstart
Get production-ready auth running in minutes
User lifecycle
Create, update, and delete users with built-in lifecycle APIs
Authentication methods
Support modern login flows with passkeys, magic links, OTPs, and social logins
B2B-native identity
Model organizations, user memberships, and multi-tenant access for B2B SaaS apps
Authorization
Define roles and permissions for human users and AI agents
Enterprise identity
Add enterprise capabilities like Single Sign-On (SSO) and SCIM provisioning
API & M2M auth
Issue and validate user-scoped and org-level tokens for APIs and services
Extensibility & Controls
Customize identity workflows and apply your business logic.
Webhooks
Receive real-time events for authentication, user lifecycle, and organizations
Interceptors
Apply custom logic and policy checks during authentication and authorization flows
Branding
Customize hosted login and signup pages plus auth emails to match your app
Auth logs
Record and inspect authentication events and user access activity for auditing purposes
Developer Resources
SDKs, code samples, and community resources for building with Scalekit.
Security, Compliance & Availability
Designed for production workloads with strict operational and security requirements.
⊕Multi-region data residency
Dedicated regional clusters in the US and EU
⊕Compliance
SOC 2, ISO 27001, GDPR, and CCPA compliant
⊕Uptime
99.99% uptime with failover redundancy
⊕Secure token & secret storage
Vault-backed storage with strong isolation for tokens and credentials