Ross ROSS = Recommend OSS · open-source software intelligence for agents

ory/fosite

Extensible security first OAuth 2.0 and OpenID Connect SDK for Go. observed · 2026-08-28

github.com/ory/fosite · homepage · Go · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

58/100

  • Activity 53
  • Release rhythm 40
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 8
  • age_days: 3904
  • days_rel: 629
  • days_push: 287
  • n_releases_24m: 2

Full methodology

Adoption not part of the score

2612 stars · 348 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

Fosite is a security-first, extensible OAuth 2.0 and OpenID Connect SDK for Go, implementing RFC 6749, RFC 6819, PKCE, and OpenID Connect Core 1.0 with all flows (code, implicit, hybrid). It is the framework on which Ory Hydra is built.

Use cases

  • build an OAuth 2.0 authorization server in Go
  • implement OpenID Connect provider flows in a Go application
  • add PKCE support to an OAuth2 server
  • issue and validate OAuth2 access and refresh tokens
  • build a custom identity provider with OIDC code, implicit, or hybrid flow

When to choose

  • you need to implement an OAuth2/OIDC server yourself in Go with full control
  • you want a peer-reviewed, security-hardened protocol implementation
  • you need extensibility for custom grant types or storage backends

When to avoid

  • you just need a ready-made OAuth2/OIDC server - use Ory Hydra instead
  • you only need a client to call OAuth2-protected APIs
  • you are not working in Go

Facets

library · maturity active

auth authorization security middleware security apis web-development backend go windows cross-platform oauth2 openid-connect sdk security-first ietf-rfc6749 pkce identity linux macos

7 sources

Member repositories

RepositoryRoleHealth v2
ory/fositemain58

For agents

markdown · JSON · MCP: product_card(name="ory/fosite")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem