Amazon Cognito now supports machine-to-machine authorization without a user pool domain

Published
August 31, 2026
https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-cognito-get-client-token/

Amazon Cognito GetClientToken API Operation

Amazon Cognito now supports the GetClientToken API operation, enabling app clients to obtain access tokens for machine-to-machine (M2M) authorization directly through the AWS SDK, CLI, or API — without configuring a user pool domain. This gives you an additional path to authorize service-to-service communication for applications, microservices, and automated workloads.

What to do

  • Configure an app client.
  • Call GetClientToken using the AWS Management Console, CLI, or SDKs.

This feature is available in all AWS Regions where Amazon Cognito user pools are available. Standard Amazon Cognito M2M pricing applies.

Source: AWS release notes




If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.

Follow our blog

Get the latest insights and advice on AWS services from our experts.

By clicking Sign Up you're confirming that you agree with our Terms and Conditions.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.