The [Okta User API](/docs/api/rest/users.html) provides operations to manage users in your organization.
Full LLM thinking from the 4-phase benchmark pipeline.
{
"service_type": "platform",
"base_url": "https://okta.local",
"auth_method": "api_key",
"auth_config": {
"header": "Authorization",
"scheme": "SSWS",
"note": "Okta API tokens are passed as 'Authorization: SSWS <token>'. OAuth 2.0 with scopes (okta.users.manage, etc.) is also supported for newer integrations."
},
"endpoints": [
{
"method": "GET",
"path": "/api/v1/users",
"description": "List users in the organization; supports filtering, search, and pagination."
},
{
"method": "POST",
"path": "/api/v1/users",
"description": "Create a new user."
},
{
"method": "GET",
"path": "/api/v1/users/{userId}",
"description": "Retrieve a user by ID, login, or email."
},
{
"method": "PUT",
"path": "/api/v1/users/{userId}",
"description": "Update a user's profile."
},
{
"method": "DELETE",
"path": "/api/v1/users/{userId}",
"description": "Delete a user."
},
{
"method": "GET",
"path": "/api/v1/users/me",
"description": "Get the currently authenticated user (requires OAuth 2.0 with openid scope)."
}
],
"pricing_model": {
"type": "subscription",
"details": {
"tiers": [
"Developer (free, limited)",
"One App (per-app pricing)",
"Enterprise",
"Adaptive MFA add-ons"
],
"api_access": "Included in all paid plans; rate limits vary by edition."
}
},
"rate_limits": {
"documented": true,
"note": "Okta enforces org-wide and per-endpoint rate limits; exact values depend on edition and endpoint. Common default is 600 requests/minute per org for user-related APIs. Headers X-Rate-Limit-Limit, X-Rate-Limit-Remaining, X-Rate-Limit-Reset are returned."
},
"capabilities": [
"User lifecycle management (create, read, update, delete, activate, deactivate, suspend, unsuspend)",
"User profile schema management",
"Group membership management",
"Authentication and MFA integration",
"Directory integration (AD, LDAP)",
"OAuth 2.0 / OpenID Connect provider",
"SCIM provisioning support",
"Event and system log APIs",
"Custom attributes and profile mappings",
"Pagination, filtering, and search"
],
"raw_analysis": "Okta is a mature enterprise identity and access management (IAM) platform offering a comprehensive REST API for user management. The User API described here is a core part of Okta's API surface, exposed at /api/v1/users and related sub-resources. It is designed primarily for enterprise IT, identity engineers, and application developers integrating authentication, provisioning, and user lifecycle automation. The platform is highly mature, widely adopted, and well-documented.\n\nAuthentication is typically via API token (SSWS) or OAuth 2.0 for delegated access. The user API supports full CRUD, lifecycle operations, pagination, and advanced search via SCIM-style filters. Integrations exist with countless SaaS apps, HR systems (Workday, BambooHR), and CI/CD tooling via provisioning connector and SDKs (Java, .NET, Python, Node.js, Go, etc.).\n\nThe URL 'https://okta.local' indicates a local or test Okta tenant; production base URLs follow the pattern https://{yourOktaDomain}/api/v1. Pricing is subscription-based, with a free Developer Edition for testing; API rate limits apply and are documented per endpoint. Overall, this is a robust, enterprise-grade platform API suitable for automation and identity orchestration."
}0/3 tests passed
| Test | Endpoint | Status | Latency |
|---|---|---|---|
| website_uptime | GET / | None | 91ms |
| robots_txt | GET /robots.txt | None | 85ms |
| llms_txt | GET /llms.txt | None | 93ms |
{
"overall": 72,
"dimensions": {
"token_efficiency": 8.0,
"first_try_success": 7.0,
"response_parseability": 9.0,
"error_clarity": 7.5,
"doc_quality": 8.0,
"auth_simplicity": 7.0,
"latency": 3.0,
"consistency": 5.0
},
"pricing_normalized": {
"model": "subscription",
"tiers": ["Free (Developer)", "Per-app", "Enterprise", "Add-ons"],
"api_included": true,
"notes": "Free tier exists but limited; per-app pricing can scale unpredictably."
},
"issues": [
"All three live checks failed with DNS resolution errors ('Name or service not known'), indicating the tested host was unreachable — this may be a domain/endpoint misconfiguration but blocks live verification.",
"No security headers, robots.txt, or llms.txt could be retrieved — unclear agent/web discoverability.",
"Latency measurements (~85-93ms) reflect DNS failures, not real response times; actual performance is unknown.",
"Pricing is per-app and tier-based, which agents may struggle to estimate for users without contextual scale info."
],
"recommendations": [
"Publish an llms.txt and machine-readable docs so agents can efficiently surface capabilities without scraping.",
"Verify DNS/domain configuration — repeated resolution failures suggest an agent-facing endpoint problem.",
"Expose a public status page or uptime SLA to improve consistency perception.",
"Provide a clear, concise pricing calculator or examples to help agents estimate cost for users.",
"Ensure error responses from the API include structured error codes for better agent self-correction."
]
}Show your live agent-readiness score on your own site. Free, no auth — it updates as your score changes.
<a href="https://prowl.world/service/users-okta-api">
<img src="https://prowl.world/badge/users-okta-api.svg" height="56" alt="Agent-readiness on Prowl">
</a>
See operational metrics, LLM evaluations, agent readiness, and more.
Open in Dashboard