goauthentik/authentik
The authentication glue you need. observed · 2026-08-28
Health v2 · maintenance only
95/100
- Activity 99
- Release rhythm 86
- Longevity 100
Flags: no_license
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 8
- age_days: 2438
- days_rel: 15
- days_push: 7
- n_releases_24m: 68
Adoption not part of the score
25178 stars · 1963 forks observed · 2026-08-28
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded
authentik is an open-source Identity Provider (IdP) and Single Sign-On (SSO) platform supporting SAML, OAuth2/OIDC, LDAP, SCIM, RADIUS, and proxy-based authentication. It is designed for self-hosting via Docker Compose or Kubernetes, with customizable authentication flows, MFA, passkeys, and policy-based conditional access.
Use cases
- self-host single sign-on for all my apps
- replace Okta or Auth0 with an open-source identity provider
- add SAML or OIDC login to legacy applications
- centralize multi-factor authentication across systems
- manage customer identities for a SaaS product
- enforce zero-trust conditional access policies
- add authentication to apps behind a reverse proxy
When to choose
- you want full control over identity data by self-hosting your IdP
- you need broad protocol support (SAML, OAuth2/OIDC, LDAP, SCIM, RADIUS) in one platform
- you need customizable authentication flows, MFA, and passkeys
- you want to protect legacy apps that lack native SSO via a proxy provider
- you run Kubernetes or Docker and want infrastructure-as-code friendly identity management
When to avoid
- you want a fully managed, zero-operations hosted identity service
- you need a minimal lightweight auth library embedded directly in a single application
- you require enterprise features like PAM, Entra ID integration, or FIPS compliance without a paid subscription
- you lack the capacity to operate and secure a self-hosted identity service
Facets
service · maturity active
auth authorization security proxy self-hosted api-gateway security self-hosted developer-tools web-development self-hosted cloud python identity-provider sso saml oauth2 oidc ldap scim mfa passkeys single-sign-on idp zero-trust docker kubernetes linux
8 sources
- readme: https://github.com/goauthentik/authentik · fetched 2026-08-28 · 94f4292a49a2
- homepage: https://goauthentik.io · fetched 2026-08-29 · 007f9ca8492f
- site_page: https://goauthentik.io/features · fetched 2026-08-29 · 493dc940d067
- site_page: https://docs.goauthentik.io · fetched 2026-08-29 · 8aeb7261b676
- site_page: https://docs.goauthentik.io/install-config · fetched 2026-08-29 · dba50e32b0ad
- site_page: https://docs.goauthentik.io/developer-docs · fetched 2026-08-29 · ed61586c367d
- site_page: https://integrations.goauthentik.io · fetched 2026-08-29 · c36048d0850e
- site_page: https://goauthentik.io/pricing · fetched 2026-08-29 · 9d8c0c95c5b6
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| goauthentik/authentik | main | 95 |
For agents
markdown · JSON · MCP: product_card(name="goauthentik/authentik")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem