Skip to main content

Authentication

Overview

All products use AWS Cognito (User Pool: us-east-1_75Rp4zNBg).

Auth Flow

  1. User signs in via Cognito hosted UI or SDK
  2. Cognito issues JWT access token
  3. Token validated by API via JWKS
  4. User identity extracted from token claims

Token Validation

  • Algorithm: RS256
  • JWKS endpoint rate-limited (5 req/min)
  • Token expiration enforced
  • User pool ID verified

Implementation

See API Authentication for code details.