Streamlining Authentication for the Modern E-commerce Marketplace
ArenaClub is a leading marketplace and grading company for collectible items, specializing in trading cards and memorabilia, with an active inventory of over 200,000 cards and more than 600,000 cards processed to date.
Overview
As ArenaClub expanded, a more robust and scalable authentication solution became critical. Their previous in-house solution presented challenges, especially with mobile app development and the need for increased security with multi-factor authentication, leading them to explore external authentication providers.
After evaluating several options, including AWS Cognito and Auth0, ArenaClub had to look at other alternatives due to feature requirements and pricing issues. They finally selected SuperTokens for its feature set and tailored support.
The Arena Club team was able to get SuperTokens integrated within 2.5 weeks with minimum impact on the user experience. SuperTokens enables a more secure flow with MFA and a native integration in mobile experiences. All of which were key for ArenaClub.
The Premise
ArenaClub had initially relied on a custom-built, cookie-based authentication system. This worked great at the time and suited their needs, but as they scaled, particularly in mobile app development, issues arose.
ArenaClub's issues were the following:
Auth Sharing:
Arena Club has two main apps. An admin app geared for operations, and a customer-facing app called the front stage. The authentication system needs to be unified between the two, such that if a user were to log into one app they should be able to log into the other. This would imply that roles and access control mechanisms would also need to be in place.
MFA Requirements:
Arena Club at its core is a wallet platform. Users submit their trading cards and collectibles into a marketplace and onto their blockchain. Their user accounts have sensitive information and a monetary value, therefore having secure authentication with multi-factor authentication is a requirement.
Mobile Compatibility:
Mobile compatibility was a massive consideration and they didn't want to invest the time and resources into building authentication for mobile when cookie-based systems were not well-suited for mobile app development, which relies more on token-based authentication.
Therefore migrating to a pre-built solution made more sense.
The Process
“Let's look at some players in the market who are new and upcoming. And that's when we came across Super Tokens.”
ArenaClub initially considered AWS Cognito due to available AWS credits, but it lacked the specialized focus and scaling capabilities required. Auth0 was another contender, but its pricing was not feasible for their scale. While exploring emerging solutions on Crunchbase, ArenaClub discovered SuperTokens, which offered the features they were seeking:
- MFA Support
- Pre-built UI Components
- Token-based Authentication
- Competitive Pricing
- React Native SDK
The decision was further solidified by the excellent customer support offered by SuperTokens, including quick turnaround times and a dedicated Slack channel for real-time collaboration.
“And then honestly the turnaround time was really good because if you remember, we got on a call. This was over a weekend. We decided to do a product demo, get a deal signed, and just go with it. That seamless experience, I think is really what helped.”
The implementation process took 2.5 to 3 weeks, during which ArenaClub transitioned from their custom solution to SuperTokens. Key aspects of the migration included:
- User Migration: A custom script was written to transfer users, linking user IDs between the old and new systems. All users were required to set up MFA upon their first login after the migration.
- Seamless Integration: SuperTokens' SDKs for both web and mobile (React Native) allowed ArenaClub to integrate the solution into their existing platforms with minimal disruption.
The support provided by the SuperTokens team throughout the process was crucial in resolving any issues that arose during the transition.
Results
Since implementing SuperTokens, ArenaClub has experienced improved stability and security in their authentication system.
- Enhanced Security: MFA provides an additional layer of security, essential for ArenaClub's marketplace where real-world assets (cards) are transacted.
- Mobile Compatibility: The switch to token-based authentication has facilitated smoother mobile app development and user experiences.
- Pre-built UI: The availability of pre-built UI components has reduced development overhead, allowing ArenaClub's engineering team to focus on other core features.
By partnering with SuperTokens, ArenaClub successfully transitioned to a modern, scalable authentication solution that supports their growth in both web and mobile applications. The integration has enhanced security, improved user experiences, and positioned ArenaClub to continue innovating in the collectibles market.
“I'm happy about the support. Yes, there are time zone differences at times, but we have that direct channel and that is helpful.”
ArenaClub continues to work with SuperTokens on optimizing performance and exploring advanced features, ensuring they are equipped to handle future growth.
To watch entire case study discussion video please click here.