Amazon Cognito

Implement secure, frictionless customer identity and access management that scales

50,000 active users free per month

Deliver frictionless customer identity and access management (CIAM) with a cost-effective and customizable service.

Add security features such as adaptive authentication, support compliance, and data residency requirements.

Scale to millions of users with a fully managed, high-performant, and reliable identity store.

Federate sign-in using OIDC or SAML 2.0 and connect to a broad group of AWS services and products.

How it works

With Amazon Cognito, you can add user sign-up and sign-in features and control access to your web and mobile applications. Amazon Cognito provides an identity store that scales to millions of users, supports social and enterprise identity federation, and offers advanced security features to protect your consumers and business. Built on open identity standards, Amazon Cognito supports various compliance regulations and integrates with frontend and backend development resources.

Diagram showing how Amazon Cognito allows you to add sign-up and sign-in features, manage access, and connect resources to AWS products and services.
Amazon Cognito | Amazon Web Services (1:27)
Introduction to Amazon Cognito
Amazon Cognito helps you implement customer identity and access management (CIAM) into your web and mobile applications. You can quickly add user authentication and access control to your applications in minutes.
Introduction to Amazon Cognito
Amazon Cognito helps you implement customer identity and access management (CIAM) into your web and mobile applications. You can quickly add user authentication and access control to your applications in minutes.

Use cases

Engage customers with flexible authentication

Allow customers to sign in directly, or through social or enterprise identity providers, to a hosted UI with your branding.

Learn more about user authentication »

Manage B2B identities

Use a variety of multi-tenancy options that provide different levels of policy and tenant isolation for your business.

Learn more about multi-tenant applications »

Secure machine-to-machine authentication

Develop modern, secure, microservice-based applications, and more easily connect your application to backend resources and web services.

Learn more about connecting to server-side resources »

Get role-based access to AWS resources

Gain secure, role-based access to AWS services, such as Amazon S3, Amazon DynamoDB, and AWS Lambda.

Learn more about brokered access »

How to get started

Explore Amazon Cognito features

Learn how to build and deploy secure apps faster and more easily.

Get started with Amazon Cognito

Understand the essentials before building.

Integrate with AWS WAF

Get built-in network protection for your public-facing applications.


Explore more of AWS