Authyo MCP server for AI agents and assistants

Securely connect your AI agents and chatbots (Claude, ChatGPT, Cursor, etc) with Authyo MCP or direct API to send OTPs, verify login codes, manage sessions, and trigger transactional notifications through natural language.

Authyo logoAuthyo
Api Key

Authyo is a REST API service for passwordless authentication, OTP verification, session management, and transactional notifications. Use it to add secure login flows and user verification without building auth infrastructure from scratch.

5 Tools

Try Authyo now

Type what you want done — sign in and watch it run live in the Tool Router playground.

TOOL ROUTER PLAYGROUND
Authyo
Try asking
TOOLS

Supported Tools

Every Authyo action and event your agent gets out of the box.

Revoke Session

Irreversibly revoke an Authyo user session identified by its JWT, typically during logout.

Send Order Notification

Send a usage-billed order or payment notification through an Authyo built-in template; requires a configured sender.

Send OTP

Send a usage-billed one-time password to an email address or international phone number using Authyo's configured sender.

Verify OTP

Verify a user-provided OTP for an Authyo mask ID and return the verified user identity without exposing the issued session JWT.

Verify Token

Validate an Authyo session JWT and return its associated user identity without returning the JWT.

SETUP GUIDE

Connect Authyo MCP Tool with your Agent

1

Install Composio

typescript
npm install @composio/core ai @ai-sdk/mcp @ai-sdk/openai
Install the Composio SDK and your agent framework
2

Create a session with MCP enabled

typescript
import { Composio } from "@composio/core";

const composio = new Composio();
const { mcp } = await composio.create("your-user-id", {
  toolkits: ["authyo"],
  mcp: true,
});
Create a session scoped to Authyo and read its MCP URL and headers
3

Connect your agent to the MCP server

typescript
import { createMCPClient } from "@ai-sdk/mcp";
import { openai } from "@ai-sdk/openai";
import { generateText, stepCountIs } from "ai";

const client = await createMCPClient({
  transport: { type: "http", url: mcp.url, headers: mcp.headers },
});

const { text } = await generateText({
  model: openai("gpt-5.6-sol"),
  tools: await client.tools(),
  prompt: "Send an Authyo OTP to +15551234567 for passwordless login",
  stopWhen: stepCountIs(10),
});

console.log(text);
await client.close();
Pass the session's MCP URL and headers to your agent and run a Authyo request
SETUP GUIDE

Connect Authyo API Tool with your Agent

1

Install Composio

typescript
npm install @composio/core @composio/openai openai
Install the Composio SDK, the OpenAI provider, and the OpenAI SDK
2

Create a Composio session

typescript
import OpenAI from "openai";
import { Composio } from "@composio/core";
import { OpenAIResponsesProvider } from "@composio/openai";

const composio = new Composio({ provider: new OpenAIResponsesProvider() });
const client = new OpenAI();

const session = await composio.create("your-user-id", { toolkits: ["authyo"] });
const tools = await session.tools();
Initialize Composio with the OpenAI Responses provider and create a session scoped to Authyo
3

Run Authyo tools with your agent

typescript
let response = await client.responses.create({
  model: "gpt-5.6-sol",
  tools,
  input: [{ role: "user", content: "Send an Authyo OTP to +15551234567 for passwordless login" }],
});

while (response.output.some((o) => o.type === "function_call")) {
  const outputs = await composio.provider.handleToolCalls(session, response.output);
  response = await client.responses.create({
    model: "gpt-5.6-sol",
    tools,
    previous_response_id: response.id,
    input: outputs,
  });
}

console.log(response.output_text);
Send a request, execute the Authyo tool calls through the session, and print the final answer

Why Use Composio?

AI Native Authyo Integration

  • Supports both Authyo MCP and direct API based integrations
  • Structured, LLM-friendly schemas for reliable OTP, session, and notification actions
  • Rich coverage for sending codes, verifying users, and managing Authyo-powered login flows

Managed Auth

  • Secure API key handling so your agents never need hard-coded Authyo credentials
  • Central place to manage, scope, and revoke Authyo access across users and environments
  • Cleaner production setup for passwordless auth workflows, OTP checks, and transactional messages

Agent Optimized Design

  • Tools are shaped for language models, so agents can call Authyo actions with fewer brittle steps
  • Clear inputs and outputs for common auth tasks like sending OTPs, verifying codes, and checking sessions
  • Comprehensive execution logs so you always know what ran, when, and on whose behalf

Enterprise Grade Security

  • Fine-grained RBAC so you control which agents and users can access Authyo
  • Scoped, least privilege access to Authyo authentication and notification workflows
  • Full audit trail of agent actions to support review, incident response, and compliance
FAQ

Frequently asked questions

Yes, Authyo requires you to configure your own API key credentials. Once set up, Composio handles secure credential storage and API request handling for you.

Yes! Composio's Tool Router enables agents to use multiple toolkits. Learn more.

Yes. Composio is SOC 2 Type II compliant and is built to keep your Authyo connection and credentials secure. OAuth tokens and API keys are encrypted, and sensitive customer data is protected at rest and in transit.

Composio also undergoes independent security testing and continuously monitors its systems for security threats. You can review the latest reports and policies in the Composio Trust Center.

Composio maintains and updates all toolkit integrations automatically, so your agents always work with the latest API versions.

Create the key in your Authyo account settings, then paste it once on Composio's connection page. Composio stores it encrypted and uses it only for the Authyo actions your agent runs. Nobody else in your workspace can read it, and you can revoke it inside Authyo at any time.

When you connect a Authyo account through Composio, every action runs under that account, so anything the agent creates, sends, or changes shows up in Authyo as done by you. Keep an approval step in your prompt for actions with side effects, such as sending or deleting, and have the agent draft first.

Whatever the credentials you connect allow inside Authyo. If Authyo lets you scope a key to specific permissions, create a scoped one so the agent can only do what you intend. You can revoke the key inside Authyo at any time.

Yes. Composio supports multiple connected accounts for the same app, and that works in Claude, ChatGPT, or any other assistant you connect through Composio. Give each Authyo connection a name such as work or personal, and the assistant uses the one you mention in the request. Each account keeps its own credentials and nothing is merged.

The connection stops working the moment Authyo rejects the old key. Create a new key in Authyo and reconnect the account from the Composio dashboard or by asking your agent to reconnect Authyo. Nothing else changes.

Composio's free Hobby plan includes 100,000 tool calls per month with no credit card, which covers most personal Authyo use. Paid plans add higher limits and team features. Your Authyo plan and its API limits still apply as usual.

Built-in connectors usually give one AI access to a limited set of apps. Many people use Composio because it lets their AI connect to more apps than it normally supports, or connect to multiple accounts for the same app (e.g. connect Claude to multiple Authyo accounts).

With Composio, you connect Authyo once and then use it across different AI assistants without setting it up separately in each one. Connect your apps to Composio once, then connect Composio to whichever AI you use, whether that's Claude, ChatGPT, Hermes, or your own custom assistant.

Start with Authyo.It takes 30 seconds.

Managed auth, hosted MCP servers, and every Authyo tool your agent needs.Free to start.

Start building