Skip to main content
GET
Get a list of authentication methods

Authorizations

Authorization
string
header
required

Bearer and DPoP tokens are supported depending on the API configuration

Headers

x-correlation-id
string

A client-provided unique identifier for a single operation, used to correlate the request across Auth0 systems. The value is surfaced under references.correlation_id in tenant logs and echoed back on the response's x-correlation-id header. Invalid or oversized values are silently dropped and replaced by a generated UUID v4. Avoid including personally identifiable information (PII).

traceparent
string

A W3C Trace Context header used to correlate the request across distributed traces. When supplied, the inbound trace is continued and a fresh child span is echoed back on the response's traceparent header; the trace ID is also surfaced under references.trace_id in tenant logs. Malformed values are ignored.

Query Parameters

type
enum<string>

Filter authentication methods by type Authentication method type (factor)

Available options:
password,
passkey,
webauthn-platform,
webauthn-roaming,
totp,
phone,
email,
push-notification,
recovery-code

Response

Successfully retrieved authentication methods

authentication_methods
(password · object | passkey · object | recovery-code · object | push-notification · object | totp · object | webauthn-platform · object | webauthn-roaming · object | phone · object | email · object)[]
required
Maximum array length: 20