Documentation

3een Authentication

Hosted, branded sign-in pages for your users, and the @3een/auth SDK that connects them to your Next.js or Express app with verified sessions, roles and permissions.

How it fits together

  1. Your app

    Sends the visitor to /api/auth/signin (SignInButton, or any link).

  2. @3een/auth

    Looks up your environment with the API key and redirects to your hosted sign-in page.

  3. Hosted AuthKit

    Your branding, every enabled method, MFA and bot protection. Returns a one-time code.

  4. @3een/auth

    Redeems the code on your server and sets httpOnly session cookies.

  5. Your app

    Reads the verified session with getAuth(), or protects routes with the middleware.

Browse