Docs
Obexal documentation
Everything to integrate and operate Obexal: the OIDC and OAuth 2.1 provider, federation, provisioning, access control, AI agent governance and the admin API.
Get started
What Obexal is, create your organization and connect a first app.
Authentication
The OIDC and OAuth 2.1 provider, tokens, sessions and every sign-in factor.
Federation
SAML in both directions and LDAP or Active Directory sign-in.
Directory and provisioning
Users, groups, invitations and SCIM provisioning in both directions.
Access control
Conditional access, risk signals, policy simulation, roles and password policy.
AI agents
Identity, delegation, governance, detection and the kill switch for AI agents.
Administration
The admin API, policy-as-code, webhooks, audit log, domains and branding.
Reference
Endpoint-by-endpoint reference: OAuth, admin API, SCIM, errors and limits.
Self-hosting
Run Obexal on your own EU infrastructure: deploy, configure, back up, rotate.
Security and compliance
The security model, GDPR tooling and data residency, stated precisely.