Skip to content

Rank #4 of 5 in Auth & Identity

WorkOS logo

WorkOS

WorkOS, Inc. · commercial

22130/yrnpm 2.1M/wk ±0npm/wk -780.5k

Access

Install

npmnpm install @workos-inc/node

Compare head-to-head

Alternatives to WorkOS

Showcase

WorkOS homepage screenshot
homepage · captured Sep 2026 · view live ↗
WorkOS docs screenshot
docs · captured Sep 2026 · view live ↗

Try itExperimental

See what an agent can do with WorkOS before you ever sign up. Pick a story: recorded sessions replay real probe-harness transcripts; the live MCP handshake runs real requests from our edge, right now — including, where the server allows it, one real read-only tool call (bring your own key for auth-gated servers); sandboxed self-drive sessions are designed and gated (docs/TRY-IT.md).

$mcp-probe → https://mcp.workos.com/mcplive — run just now from our edge
$ press ▶ run to send one JSON-RPC initialize from our edge
real JSON-RPC against the vendor’s documented MCP endpoint — read-only, nothing is written

Verified integrations

Connections to other tracked products — hover a chip for the verbatim evidence quote behind it.

By theme — the product's score on each story themeBy theme

Agent auth — stories about agent auth in this arenaAgent authevidence →

Stories about agent auth in this arena

51.4/100

Agenticness — how well agents can access and operate the productAgenticnessevidence →

How well agents can access and operate the product

33.2/100

Automation depth — how much of the product can run unattendedAutomation depthevidence →

How much of the product can run unattended

7.2/100

Deployment control — stories about deployment control in this arenaDeployment controlevidence →

Stories about deployment control in this arena

0.0/100

Enterprise sso — stories about enterprise sso in this arenaEnterprise ssoevidence →

Stories about enterprise sso in this arena

90.0/100

Events webhooks — stories about events webhooks in this arenaEvents webhooksevidence →

Stories about events webhooks in this arena

33.0/100

Framework integration — stories about framework integration in this arenaFramework integrationevidence →

Stories about framework integration in this arena

28.0/100

Mfa passwordless — stories about mfa passwordless in this arenaMfa passwordlessevidence →

Stories about mfa passwordless in this arena

44.7/100

Oauth oidc — stories about oauth oidc in this arenaOauth oidcevidence →

Stories about oauth oidc in this arena

61.1/100

Openness — open source, data portability, and self-hosting storiesOpennessevidence →

Open source, data portability, and self-hosting stories

16.0/100

Orgs multitenant — stories about orgs multitenant in this arenaOrgs multitenantevidence →

Stories about orgs multitenant in this arena

33.6/100

Privacy posture — data-handling and privacy storiesPrivacy postureevidence →

Data-handling and privacy stories

0.0/100

Rbac permissions — stories about rbac permissions in this arenaRbac permissionsevidence →

Stories about rbac permissions in this arena

67.5/100

Session management — stories about session management in this arenaSession managementevidence →

Stories about session management in this arena

0.0/100

User migration — stories about user migration in this arenaUser migrationevidence →

Stories about user migration in this arena

32.0/100

Story verdicts — every judged story with its evidenceStory verdicts

What’s free: 5 free · 3 paid · 0 enterprise · 26 not stated in evidence

?

Sorted by importance (agentic first) (high → low) · 56/56 stories · click a row’s chevron for the rationale and evidence

Drive the product through a documented public API G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full9/10T

Connect an agent via an official MCP server G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3full8/10T

Delegate tasks to a built-in AI assistant inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness3none0/10

Plug MCP servers into this product so it can use their tools G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness3n/auntestednone yet

Point an agent at llms.txt or agent-oriented docs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full9/10T

Build against official SDKs G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2full7/10C

Issue scoped/least-privilege API credentials for an agent G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial6/10C

Operate the product with natural-language commands G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial6/10T

Run the product headlessly / in CI for automation G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial5/10T

Subscribe to events via webhooks G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial5/10C

Use an official CLI G

Agent access

ai-native userAgenticness — how well agents can access and operate the productAgenticness2partial3/10C

Download a machine-readable API spec (OpenAPI or equivalent) G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Explore an interactive API reference with runnable examples G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Get AI-generated insights and suggestions from my data inside the product G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Set up automations that run autonomously in the background G

Agentic features

ai-native userAgenticness — how well agents can access and operate the productAgenticness2none0/10

Rely on versioned APIs with a documented deprecation policy G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness2noneuntestednone yet

Test against a sandbox environment without touching production data G

Api quality

ai-native userAgenticness — how well agents can access and operate the productAgenticness1noneuntestednone yet

Connect enterprise identity providers over SAML and OIDC (Okta, Entra, Google Workspace) for workforce sign-in G

Sso

security-engineerEnterprise sso — stories about enterprise sso in this arenaEnterprise sso3fullfree9/10X

Define roles and permissions and have them enforced and surfaced in session tokens for authorization checks G

Rbac

developerRbac permissions — stories about rbac permissions in this arenaRbac permissions3full8/10C

Issue machine-to-machine credentials (client-credentials flow) so backend services and agents authenticate without a human in the loop C

Machine identity

ai-native userAgent auth — stories about agent auth in this arenaAgent auth3full8/10C

Put a spec-compliant OAuth authorization flow in front of my MCP server so remote agents connect with scoped, verifiable tokens C

Mcp

ai-native userAgent auth — stories about agent auth in this arenaAgent auth3full8/10T

Implement standard OAuth 2.0 / OIDC flows (authorization code with PKCE, refresh tokens) without hand-rolling protocol details C

Flows

developerOauth oidc — stories about oauth oidc in this arenaOauth oidc3partial6/10C

Model multi-tenant B2B apps with organizations, memberships, and invitation flows out of the box C

Orgs

developerOrgs multitenant — stories about orgs multitenant in this arenaOrgs multitenant3partial6/10C

Give each agent its own least-privilege machine identity with narrowly scoped permissions and instant revocation, instead of sharing a human's credentials C

Machine identity

ai-native userAgent auth — stories about agent auth in this arenaAgent auth3partial5/10C

Have an agent obtain short-lived, user-consented tokens for third-party APIs (token vault/exchange) so tool calls run under the user's delegated authority C

Delegation

ai-native userAgent auth — stories about agent auth in this arenaAgent auth3partial4/10C

Require multi-factor authentication with TOTP authenticator apps and backup codes, with step-up enforcement where needed G

Mfa

security-engineerMfa passwordless — stories about mfa passwordless in this arenaMfa passwordless3partialfree4/10C

Define rules that trigger actions automatically on events G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth3none0/10

Export all of my data in open formats and leave G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3none0/10

Protect routes with first-party framework SDKs and middleware (Next.js and peers) that verify sessions at the edge C

Frameworks

developerFramework integration — stories about framework integration in this arenaFramework integration3none0/10

Self-host the core product G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness3none0/10

Manage session lifecycle — expiry, refresh, and immediate server-side revocation of a compromised session C

Sessions

developerSession management — stories about session management in this arenaSession management3noneuntestednone yet

Prevent my data from being used to train AI models G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture3n/auntestednone yet

Authenticate CLIs and headless agents via the OAuth device authorization flow instead of pasting long-lived secrets C

Device flow

ai-native userAgent auth — stories about agent auth in this arenaAgent auth2full9/10C

Sync users and groups from customer directories via SCIM so deprovisioning in the IdP revokes app access G

Sso

security-engineerEnterprise sso — stories about enterprise sso in this arenaEnterprise sso2full9/10X

Do everything through the API that I can do in the UI G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2full8/10T

Offer passkeys/WebAuthn and passwordless options like magic links or email OTP as first-class sign-in methods G

Passwordless

developerMfa passwordless — stories about mfa passwordless in this arenaMfa passwordless2fullfree8/10C

Offer sign-in with a broad set of social and OAuth identity providers through configuration, not custom code G

Flows

developerOauth oidc — stories about oauth oidc in this arenaOauth oidc2fullfree8/10X

Turn my own application into an OAuth provider that issues tokens to third-party clients ("Sign in with my app") C

Provider

developerOauth oidc — stories about oauth oidc in this arenaOauth oidc2full8/10C

Ship production sign-in, sign-up, and profile management with prebuilt, customizable UI components or hosted pages C

Frameworks

developerFramework integration — stories about framework integration in this arenaFramework integration2fullfree7/10X

Capture tamper-evident audit logs of authentication and admin activity and stream or export them to my SIEM G

Audit

security-engineerEvents webhooks — stories about events webhooks in this arenaEvents webhooks2partialpaid6/10C

Bulk-import existing users — including password hashes — and export them again, so I am never locked in C

Migration

developerUser migration — stories about user migration in this arenaUser migration2partial5/10X

Give each customer organization its own SSO connection with verified domains and just-in-time provisioning G

Orgs

security-engineerOrgs multitenant — stories about orgs multitenant in this arenaOrgs multitenant2partialpaid5/10C

Subscribe to webhooks or event streams for auth events (sign-ups, sign-ins, user changes) to keep my systems in sync C

Webhooks

developerEvents webhooks — stories about events webhooks in this arenaEvents webhooks2partial5/10C

Perform bulk operations across many items at once G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2partial3/10C

Control data retention and deletion G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2none0/10

Control where the auth system and its user data run — self-managed deployment, private instance, or my own database C

Deployment

security-engineerDeployment control — stories about deployment control in this arenaDeployment control2none0/10

Require asynchronous human approval (e.g. CIBA-style confirmation) before an autonomous agent completes a sensitive transaction C

Delegation

ai-native userAgent auth — stories about agent auth in this arenaAgent auth2none0/10

Choose where my data is stored (region/residency) G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2noneuntestednone yet

Opt out of telemetry and usage tracking G

ai-native userPrivacy posture — data-handling and privacy storiesPrivacy posture2n/auntestednone yet

Read the product's source under an open license G

ai-native userOpenness — open source, data portability, and self-hosting storiesOpenness2noneuntestednone yet

Schedule recurring jobs or workflows G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth2n/auntestednone yet

Follow vendor-maintained migration guides or tooling for moving off a competing auth provider without forcing password resets C

Migration

founderUser migration — stories about user migration in this arenaUser migration1partial6/10C

Rely on built-in protection against bots, credential stuffing, and brute-force attacks on the auth flows C

Hardening

security-engineerMfa passwordless — stories about mfa passwordless in this arenaMfa passwordless1partialpaid6/10C

Express fine-grained, resource-level authorization (relationship- or policy-based) beyond simple roles C

Rbac

security-engineerRbac permissions — stories about rbac permissions in this arenaRbac permissions1partial5/10C

Let users and admins see active sessions and devices and revoke them individually or all at once C

Sessions

security-engineerSession management — stories about session management in this arenaSession management1noneuntestednone yet

Version, review, and roll back my automations G

ai-native userAutomation depth — how much of the product can run unattendedAutomation depth1n/auntestednone yet

Opportunities — the stories that would move this product's scores, from its own judged verdictsOpportunitiestop 8 of 36 stories with headroom

What would move WorkOS’s scores — derived from its own judged verdicts, biggest headroom first. Each line quotes what the judge found missing; shipping it (or evidencing it publicly) is the fix.

  1. Agenticness — how well agents can access and operate the productDelegate tasks to a built-in AI assistant inside the product

    nonemoves Built-in AIimpact 45

    WorkOS's MCP evidence describes external AI agents connecting to and operating WorkOS via its API/dashboard data (workos-docs-9, workos-docs-44) — this is WorkOS acting as a tool controlled by outside agents, not a built-in assistant inside WorkOS that users delegate tasks to.

  2. Automation depth — how much of the product can run unattendedDefine rules that trigger actions automatically on events

    nonemoves PA Scoreimpact 30

    WorkOS exposes events (Directory Sync updates, Audit Log events) via webhooks/Events API, but there is no evidence of a user-defined rules engine that lets an AI-native user specify conditional triggers and automated actions — it only ships raw event delivery, not rule authoring or automation logic.

  3. Framework integration — stories about framework integration in this arenaProtect routes with first-party framework SDKs and middleware (Next.js and peers) that verify sessions at the edge

    nonemoves PA Scoreimpact 30

    The evidence pack covers WorkOS's Node SDK, SSO, Directory Sync, RBAC, Audit Logs, Vault, and MCP server, but contains no mention of a Next.js-specific SDK, middleware, or edge-based session verification.

  4. Openness — open source, data portability, and self-hosting storiesExport all of my data in open formats and leave

    nonemoves PA Scoreimpact 30

    WorkOS documents only importing data (e.g., migrating FROM Auth0 INTO WorkOS) and offers audit-log export, but there is no documented capability for a user/customer to export all their identity, SSO, directory, RBAC, or vault data in open formats to leave the platform; a community thread explicitly raises this exact lock-in/export concern without any WorkOS response in the evidence pack.

  5. Openness — open source, data portability, and self-hosting storiesSelf-host the core product

    nonemoves PA Scoreimpact 30

    WorkOS is presented entirely as a hosted SaaS platform with an API/SDK model; there is no evidence of a self-hostable core product, open-source server, or on-prem deployment option.

  6. Session management — stories about session management in this arenaManage session lifecycle — expiry, refresh, and immediate server-side revocation of a compromised session

    nonemoves PA Scoreimpact 30

    WorkOS/AuthKit is an authentication platform where session lifecycle management (expiry, refresh, revocation) would be a natural and expected capability, so the axis applies — but the evidence pack contains no documentation of session expiry policies, token refresh mechanics, or server-side session/token revocation for compromised sessions.

  7. Agenticness — how well agents can access and operate the productGet AI-generated insights and suggestions from my data inside the product

    nonemoves Built-in AIimpact 30

    Missing: any AI-driven insights/analytics dashboard, evidence of suggestion generation from customer data, or reporting on usage/security patterns via AI.

  8. Agenticness — how well agents can access and operate the productSet up automations that run autonomously in the background

    nonemoves Built-in AIimpact 30

    Missing: any scheduler/trigger system, evidence of agents running unattended over time, or documented autonomous workflow execution.

Showing the top 8 of 36 — every none/partial verdict in the story verdicts table is headroom.

Think a verdict is wrong? Every verdicts-table row has a Flag link — see the methodology.

Coverage map — which docs area, API section, or community source covers which judged storiesCoverage map7 surfaces · 33 covered stories

Where the cited evidence behind each covered verdict came from — the same citations the verdicts table shows, no extra judging.

docs32 stories

Claims vs evidence — vendor claims reconciled against independent verdictsClaims vs evidence

7 of 21 testable claims verified · 0 contradictedintegrity 33/100

32 distinct capability claims found in WorkOS’s own claimed-docs/GitHub materials, reconciled against our judge’s independent verdicts.

7

Verified

14

Unverified

0

Contradicted

12

Undersold

Verified (10)
Unverified (22)
Undersold (12)
Claims outside our story set (4)

Real capability claims found in WorkOS’s own materials, but no story in this arena’s taxonomy covers them yet — that’s feedback on the taxonomy, not a mark against the product.

  • WorkOS Vault is an encryption key management service for storing tokens, passwords, certificates, and files

    source ↗
  • Controls rollout of new features in an application (feature flags)

    source ↗
  • Vault supports bring-your-own-key integration with AWS KMS, Google Cloud KMS, and Azure Key Vault

    source ↗
  • Can store additional custom metadata about users and organizations

    source ↗
Suggest a story for these →

Business model

free-tierusage-basedenterprise-custom

AuthKit user management is free up to 1M monthly-active users; enterprise features are priced per unit (per SSO or Directory Sync connection per month), with volume/enterprise discounts via sales.

pricing ↗

Score trend

How this product’s scores have moved as evidence and verdicts are re-derived — a point per change, not per day.

PA Score25 (Sep 4 '26)23 (Sep 16 '26)
Agent-ready59 (Sep 4 '26)59 (Sep 16 '26)

Try Experimental

Run it in the microterminal →

Recorded agent sessions — and a live MCP handshake where the vendor ships one.

Flag

⚑ Flag a verdict

Think a verdict is wrong? Opens a prefilled GitHub issue — or use the ⚑ next to any verdict above.

Badge

Embed this product's score badge →

Hotlinked SVG — always shows the live current score.

For agents

Data

Agent surface uptime MCP 100% · llms.txt 100% (30d, checked every 6h since Sep 8 '26)