Amazon Cognito

Amazon Cognito is a robust customer identity and access management (CIAM) solution designed to help developers add secure, scalable, and customizable sign-up and sign-in experiences to web and mobile applications within minutes. It provides a developer-centric, cost-effective service that supports secure, tenant-based identity stores and federation options, capable of scaling to millions of users. Amazon Cognito processes over 100 billion authentications per month, ensuring enterprise-grade reliability and performance.

  • Secure and Scalable CIAM: Delivers enterprise-grade security and scalability, supporting social identity providers and passwordless login options such as WebAuthn passkeys, SMS, and email one-time passwords.
  • Frictionless Integration and Customization: Offers low-code and no-code features, enabling developers to create branded sign-up and sign-in experiences without custom code. Compatible with a wide range of frameworks, including AWS Amplify, React, Next.js, Angular, Vue, Flutter, Java, .NET, C++, PHP, Python, Golang, Ruby, iOS (Swift), and Android.
  • Seamless Access to AWS Services: Facilitates role-based access to AWS resources like Amazon DynamoDB, Amazon S3, and AWS Lambda, supporting dynamic user-role mapping for least privilege access.
  • Advanced Security Features: Includes risk-based adaptive authentication, compromised credential monitoring, IP geo-velocity tracking, and security metrics to help meet compliance and data residency requirements.

Amazon Cognito is ideal for engaging customers with flexible authentication, managing B2B identities with multi-tenancy options, securing machine-to-machine (M2M) authorization, and enabling role-based access to AWS services. Its comprehensive feature set empowers organizations to deliver secure, seamless, and branded user experiences while maintaining high standards of security and compliance.

Included in the Free Tier

  • Access for up to 10,000 monthly active users (MAU) per month per account or AWS organization for users signing in directly or via social identity providers on Lite or Essentials tiers
  • Access for up to 50 monthly active users (MAU) per month per account or AWS organization for users federated through SAML 2.0 or OIDC identity providers, regardless of tier
  • Free tier does not expire after 12 months and is available indefinitely to new and existing AWS customers
  • No free tier for Plus tier user pools
  • No free tier for machine-to-machine (M2M) app clients or token requests
  • Free use of identity pools for authenticating users and generating unique identifiers

Visit the Amazon Cognito Pricing Page for more information on its free tier offering.