2 apps Okta
Keycloak screenshot thumbnail

Keycloak

Unlock the magic of seamless sign-ins with Keycloak, the open-source locksmith for your app's identity and access needs! Wave goodbye to the headache of user storage and authentication woes. Keycloak is like a backstage pass to secure services, offering user federation, top-notch authentication, and user management that's as fine-tuned as a Swiss watch. With its Single-Sign On sorcery, users can glide effortlessly across multiple apps with just one golden key, making 'Forgot Password?' a thing of the past. Fancy a social butterfly login? Keycloak's got you covered, mingling with the cool kids of OpenID Connect and SAML 2.0. It's a socialite that also plays nice with the old school crowd, connecting to LDAP or Active Directory with the grace of a seasoned diplomat. Command your server's security from a centralized admin console that's more organized than a librarian's bookshelf, and give your users the power to manage their own accounts without sending out an SOS. Built on the rock-solid foundations of OpenID Connect, OAuth 2.0, and SAML, Keycloak is the guardian of advanced permission management, keeping your app's security tighter than a drum. Host it on RepoCloud, and you'll be singing 'Hallelujah' for the lower costs and the open-source camaraderie that's as warm and fuzzy as a basket of kittens!

Deploy
Authorizer screenshot thumbnail

Authorizer

Your users belong in your own database - Authorizer, an open-source authentication and authorization server shipping as a single Go binary, keeps them there. It connects to 13+ backends - PostgreSQL, MySQL, SQLite, SQL Server, MariaDB, MongoDB, Cassandra, ScyllaDB, ArangoDB, DynamoDB, Couchbase, YugabyteDB, PlanetScale, and CockroachDB - so identity data lives beside the application it protects instead of in an auth vendor's cloud. The server is fully OAuth 2.0 and OpenID Connect compliant, including authorization code flow with PKCE, a JWKS endpoint, token revocation, and nine JWT signing algorithms. Login options cover email/password, magic links, TOTP multi-factor, SMS OTP via Twilio, and social providers including Google, GitHub, Apple, Microsoft, and Discord. Authorization goes beyond roles: an embedded OpenFGA engine provides Zanzibar-style relationship-based permission checks in process. APIs are exposed over GraphQL, REST, and gRPC, with SDKs for JavaScript, React, Go, and Python, plus themeable built-in login pages and an admin dashboard. Apache 2.0 licensed.

Deploy