Delete Authentik resources permanently. Provide an operation and params to remove users, groups, or apps; call with operation=help to list all delete operations.
Query Authentik identity provider data using read-only operations. Specify an operation and parameters to fetch users, groups, apps, flows, or policy bindings.
Create or update Authentik authentication pipeline configurations including flows, stages, policies, and sources non-destructively through natural language.
MCP server for Authentik identity management, enabling natural language management of users, groups, applications, flows, policies, providers, and more.
Block sign-in for a compromised or stale account while preserving the ability to restore access. Reversible action with dry-run preview and undo support.
Retrieve recent authentication events from Keycloak or Authentik, filter by event type and user. Returns normalized data with time, IP, client, error, and truncation status.
Retrieve recent admin configuration-change events across Keycloak and Authentik, identifying who changed what and from where, with pagination and truncation reporting.
Retrieve a user's full details from identity providers, including enabled state, required actions, and attributes. Specify user ID and optional IdP target.