Skip to main content

Authsignal fundamentals

What you can build

Authsignal enables you to implement various authentication patterns like passwordless login, MFA, adaptive MFA, and step-up authentication that integrate seamlessly with your existing identity stack.

MFA

Add strong security with multiple authentication factors for your users.

Adaptive MFA

Apply MFA intelligently based on user behavior and risk signals.

Passwordless login

Eliminate passwords while enhancing security and user experience.

Step-up auth

Require additional verification for sensitive operations.

How it works

Authsignal uses two core concepts to control authentication flows:

Actions

Security events in your application (like login, payment, or data access) that may require additional verification.

Rules

Conditions and logic that determine when and how users should be challenged based on risk factors, user behavior, or business requirements.

Implementation approaches

Choose the approach that best fits your application:

Pre-built UI

Hosted components with fast setup and customizable styling to match your brand.

Custom UI

Complete control over design using our client SDKs for web and mobile platforms.
Works seamlessly with leading identity providers, allowing you to enhance your existing auth infra:

AWS Cognito

Extend Cognito with passkeys and advanced authentication options.

Microsoft Azure AD B2C

Integrate with Azure B2C using Technical Profiles and OpenID Connect.

Duende IdentityServer

Add Authsignal to IdentityServer for custom authentication workflows.

Auth0

Learn how to use our Auth0 integration to implement MFA with just a few lines of code.

Explore authentication methods

Choose from various authentication factors to secure your applications:

Passkeys

FIDO2 passkeys for phishing-resistant, passwordless authentication.

Push notifications

Secure authentication via push notifications to mobile devices.

Authenticator apps

Time-based one-time passwords (TOTP) using authenticator apps.

QR code

Device authentication by scanning QR codes for cross-device flows.