Skip to content

Authentication

With Kiro installed, the last setup step is signing in. Kiro supports several providers, so pick whichever your account or organization uses:

  • GitHub: sign in with your GitHub account.
  • Google: sign in with your Google credentials.
  • AWS Builder ID: quick setup for individual developers.
  • AWS IAM Identity Center: enterprise sign-in (see below).
  • External identity provider: your org’s IdP, e.g. Microsoft Entra ID or Okta.
  1. On first launch, Kiro shows its sign-in screen. Choose Sign in.

    The Kiro IDE first-launch screen with the KIRO logo, the tagline 'An agentic IDE that helps you do your best work.', and a Sign in button.
  2. Your browser opens to the Choose a way to sign in/sign up page. It’s the same chooser for every sign-in method. Pick your provider.

    The Kiro web sign-in page titled 'Choose a way to sign in/sign up', listing Google, GitHub, Builder ID, and Your organization options.

    Using IAM Identity Center? Choose Your organization here, then follow AWS IAM Identity Center below before finishing this step.

  3. Complete sign-in in the browser; it confirms you can close the tab and sends you back to Kiro automatically. You’ll land on the welcome page and can open a project.

    The Kiro web sign-in success page showing the Kiro ghost logo and the text 'You can close this page now.'

This picks up from the Choose a way to sign in/sign up page, which is step 2 of either flow above, the browser page both the IDE and CLI open. Before you start, get two things from your admin or help desk: a Start URL and the Region that hosts your identity directory.

  1. On that chooser, select Your organization.

  2. On Sign in with your organization, you can enter your work email to find your organization. Or, if you already have your Identity Center details, choose Sign in via IAM Identity Center instead.

    The 'Sign in with your organization' screen with a work-email field, a Continue button, and a 'Sign in via IAM Identity Center instead' link.
  3. In Start URL, enter the URL provided by your admin (e.g. https://my-org.awsapps.com/start). In Region, enter the AWS Region hosting the identity directory, then choose Continue and finish sign-in in your browser.

    The 'Sign in with AWS IAM Identity Center' screen with Start URL and Region fields filled in and a Continue button.

Once you’ve finished signing in, you’re sent back to Kiro. Return to step 3 of your flow above (the welcome page in the IDE, or kiro-cli whoami in the CLI).