Manage the authentication experience
Auth and access
Authentication actions such as sign-up, sign-in, and password reset happen on Kinde-hosted pages. Set your brand defaults so your users never feel like they left your product.
Changes apply immediately to your apps. You do not need to redeploy your application code.
To set global brand defaults:
Add your company logo to authentication pages. You can upload logos for both light and dark mode.
After uploading, select Save to apply your changes. The logo is immediately visible on the sign-in page. You do not need to redeploy your application.
Kinde default:
After custom logo upload:
Logos are resized to a maximum width or height of 120 pixels based on aspect ratio. SVG works best because it displays well on any screen, but PNG and other formats are accepted.
The 120 px maximum height or width is a fixed constraint and cannot be changed through standard brand settings. If you need a larger logo, use custom authentication pages to control the layout and sizing directly.
Go to the Kinde dashboard > Settings > Environment > Applications.
Select View details on your target application tile.
Scroll down to the Callback URLs section.
Enter the destination URL in the Application homepage URI field (e.g., https://app.yourbusiness.com or https://yourbusiness.com).
Repeat for every application whose logo link you want to update.
If you are using third-party tracking, the URL will also reflect that the user clicked out of the sign-up/sign-in screen, so you can distinguish this action from successful sign-ins.
Favicons are small icons that appear on browser tabs and mobile app shortcuts.
Kinde default:
Custom:
If you want to use your own domain on the auth pages instead of the default yourbusiness.kinde.com, configure a custom domain.
The custom avatar is used on various Kinde UI pages for a consistent brand experience.
The avatar appears in the bottom left of the Kinde interface, next to your business name.
Kinde default:
Custom:
Set the default theme to match your application preference:
When using User preference, configure brand colors for both light and dark modes.
Select Save to apply your changes.
If you use organizations, each organization can have its own logo. When an organization has no logo, this setting controls what appears on auth pages instead.
| Setting | Logo display order |
|---|---|
| Enabled | Organization logo → global logo → organization name |
| Disabled | Organization logo → organization name → global logo |
Enable this when organizations should fall back to your business brand before showing a text name. Disable it when you prefer the organization name before the global logo.
On the Global > Brand page, scroll to Global logo fallback.
Turn the setting on or off.
Select Save.
To upload logos per organization, see Set unique branding for an organization.
Requires an M2M access token with the update:environments scope. See get an access token for the Kinde Management API.
curl --request PUT \ --url '<YOUR_DOMAIN>/api/v1/environment/logos/<TYPE>' \ --header 'Authorization: Bearer <M2M_ACCESS_TOKEN>' \ --form 'logo=@/path/to/logo.png'Replace <YOUR_DOMAIN> with either your custom domain (e.g. https://auth.yourbusiness.com) or your Kinde subdomain (e.g. https://yourbusiness.kinde.com).
<TYPE> to light or dark.logo form field to upload a supported file type smaller than 1MB (SVG, PNG, JPG, WebP, or AVIF). Curl sets the multipart boundary automatically when you use --form.curl --request DELETE \ --url '<YOUR_DOMAIN>/api/v1/environment/logos/<TYPE>' \ --header 'Authorization: Bearer <M2M_ACCESS_TOKEN>'See the Kinde Management API documentation for more details.
Brand defaults cover logos, colors, and core page elements. For fuller control of the authentication experience: