Skip to content

Environments

DUST runs as three deployed services. Most integrations only need the DUST API; AuthD is reached through the API’s /api/auth/* paths.

ServiceURLPurpose
DICE web apphttps://dice4.dustid.ioFirst-party web UI for DUST workflows.
DUST APIhttps://apid.dustid.ioCore API. Scalar reference at /api/docs.
AuthDhttps://authd.dustid.ioAccounts, Organizations, sessions, OIDC, Service Accounts.

The DUST API exposes the platform under these roots:

PathUse
/api/auth/tokenExchange an AuthD API key for a bearer token.
/api/auth/jwksFetch AuthD JWKS through the DUST API.
/api/v1/*Core DUST API operations.
/api/openapi.jsonGenerated OpenAPI spec served by the API.
/api/docsInteractive Scalar reference.

See the API Reference for the full generated endpoint catalog, and Conventions for the request context headers every call carries.

The DUST API serves standard health probes at the server root (not under /api):

PathCheckFailure behavior
/livezLiveness — the process is up.Always 200 while the server runs.
/readyzReadiness — includes a database round-trip.503 if the database check fails or exceeds its 2-second timeout.
/healthzAlias for the readiness check.Same as /readyz.

All three return { "status": "ok", "timestamp": "…" } when healthy; the readiness checks return { "status": "error", … } with a 503 when not. Point uptime monitors at /readyz (or /healthz).