Skip to main content

Using AIR Kit as your authentication provider

By default, users can log in with:
  • Google
  • Passwordless email
Wallet (EOA) login is not enabled by default. The AIR team enables it on request; see EOA wallet authentication. To change which methods appear and in what order, see Login options. See the single sign-on demo for a click-through of the login flow. It is a walkthrough, not a live session.
Google sign-in redirect on recent Apple OSes. On iOS 26.5.2 and above (any browser) and macOS 26.5.2 with Safari, Google sign-in completes through a full-page redirect instead of a popup. Single-page apps — or any app whose state is not fully represented by the URL — must persist and restore their page state across the redirect so the user returns to where they left off after authenticating.
Calling login() opens the AIR Kit login dialog with your enabled login methods. On Web, authToken is optional but recommended: pass a Partner JWT to identify your app, or one that includes the user’s email for Custom Auth. On Flutter, authToken is required. After login, see Sessions & user info.

EOA Wallet Authentication (optional add-on)

EOA-based authentication is available as an optional customization on top of the default AIR Account login flow. This allows your users to authenticate using any EOA wallet (e.g., MetaMask, Trust Wallet) while still benefiting from the AIR Account identity stack. The EOA wallet is used only for authentication and identity verification. It does not replace the underlying MPC-based account abstraction or control mechanisms. In effect, the wallet address serves purely as a login identifier, while account control remains securely managed by AIR.

Why enable EOA auth?

  • Seamlessly supports existing “Connect Wallet” flows
  • Zero disruption to current users
  • Adds AIR Account–powered authentication without requiring UX changes
  • Works alongside Web2 and other login methods
If your application already uses EOA wallet login, you can enable AIR Account authentication on top of it—ensuring a unified identity experience while preserving your existing flow.

How to request EOA authentication

EOA auth is not enabled by default. To enable it for your project, please contact our support team with the following details:

EOA auth enablement request template

Subject: Request to Enable EOA Authentication for <Project Name > Email Body: