# casdoor/casdoor

An open-source Agent-first Identity and Access Management (IAM) /LLM MCP & agent gateway and auth server with web UI supporting OpenClaw, MCP, OAuth, OIDC, SAML, CAS, LDAP, SCIM, WebAuthn, TOTP, MFA, Face ID, Google Workspace, Azure AD

Repository: https://github.com/casdoor/casdoor
Canonical: https://ross.abutalabs.com/products/casdoor
Homepage: https://casdoor.ai
Language: Go
License: Apache-2.0
License Family: permissive
Topics: oidc, sso, oauth, iam, saml, webauthn, mfa, single-sign-on, radius, scim, auth, authentication, mcp-gateway, ai-gateway, mcp, agent, openclaw, agentic-ai, agi, llm
Last push: 2026-08-25T16:41:38+00:00

## Health v2 (maintenance only)
Score: 95/100 (v2, computed 2026-09-03T02:39:23.370411+00:00)
- activity 99, release rhythm 87, longevity 100
- inputs: {"age_days": 2141, "days_push": 8, "days_rel": 8, "gap_med": 0.0, "n_releases_24m": 971}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 14276, forks 1788 (observed 2026-08-28T04:11:06.650905+00:00)

## What it is
Casdoor is an open-source, self-hosted Identity and Access Management (IAM) and single sign-on (SSO) platform with a web UI, written in Go. It supports OAuth 2.0/2.1, OIDC, SAML, CAS, LDAP, SCIM, WebAuthn, TOTP/MFA, and includes a built-in MCP server and gateway for AI agent authentication and management.

## Use cases
- add single sign-on to my apps with oauth and oidc
- self-host an identity provider with mfa and webauthn support
- let AI agents manage users and permissions via MCP
- authenticate AI agents with OAuth 2.1 dynamic client registration
- connect my app to Google Workspace or Azure AD for login
- add subscription billing and paid plans to my SaaS
- centralize SAML and CAS login for legacy applications

## When to choose
- you need a self-hosted SSO/IAM server with broad protocol support (OAuth, OIDC, SAML, CAS, LDAP, SCIM)
- you want a web-based admin console and multi-tenant organization management
- you need MCP/AI-agent authentication and an MCP gateway alongside traditional IAM
- you want built-in MFA, WebAuthn/passkeys, and social login providers

## When to avoid
- you only need a lightweight embedded auth library inside a single app rather than a standalone server
- you require a fully managed identity service with vendor SLAs
- you need a minimal OAuth server without a web UI or extra IAM features

## Facets
- artifact type: application
- maturity: active
- function: auth, authorization, mcp, api-gateway, web-framework, self-hosted, security, monitoring
- domain: security, large-language-models, web-development, self-hosted, developer-tools
- platform: windows, self-hosted, go
- tags: sso, oauth, oidc, saml, ldap, scim, webauthn, mfa, totp, single-sign-on, identity-provider, mcp-server, agent-auth, casbin, saas-billing, authentication, ai-agents, linux, macos, docker, web-server

## Member repositories
- casdoor/casdoor (main) score 95

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:11:06.650905+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:12:41.119068+00:00, confidence not recorded.
  - readme: https://github.com/casdoor/casdoor (fetched 2026-08-28T04:11:06.650905+00:00, sha 9969cdab2800)
  - homepage: https://casdoor.ai (fetched 2026-08-29T08:06:21.853694+00:00, sha 966e9af24f93)
  - site_page: https://casdoor.ai/docs/overview (fetched 2026-08-29T08:06:21.862750+00:00, sha 807bacd606e6)
  - site_page: https://casdoor.ai/docs/how-to-connect/mcp/overview (fetched 2026-08-29T08:06:21.864646+00:00, sha 902603c51f0c)
  - site_page: https://casdoor.ai/docs/llm/openclaw (fetched 2026-08-29T08:06:21.866337+00:00, sha 7dbdb734df57)
  - site_page: https://casdoor.ai/docs/how-to-connect/totp-authenticator-app (fetched 2026-08-29T08:06:21.869721+00:00, sha 08224428157a)
  - site_page: https://casdoor.ai/docs/how-to-connect/mcp/integration (fetched 2026-08-29T08:06:21.871338+00:00, sha 38bbd6140056)
  - site_page: https://casdoor.ai/docs/pricing/overview (fetched 2026-08-29T08:06:21.872819+00:00, sha d34f2d81fbe1)
  - site_page: https://casdoor.ai/docs/category/connecting-to-casdoor (fetched 2026-08-29T08:06:21.874206+00:00, sha b49d64f86e4e)
  - site_page: https://casdoor.ai/ecosystem (fetched 2026-08-29T08:06:21.868098+00:00, sha 078873bebfb3)
- Data as of 2026-08-30T08:39:29.467469+00:00.
