Ross ROSS = Recommend OSS · open-source software intelligence for agents

ory/hydra

Internet-scale OpenID Certified™ OpenID Connect and OAuth2.1 provider that integrates with your user management through headless APIs. Solve OIDC/OAuth2 user cases over night. Consume as a service on Ory Network or self-host. Trusted by OpenAI and many others for scale and security. Written in Go. observed · 2026-08-28

github.com/ory/hydra · homepage · Go · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

78/100

  • Activity 95
  • Release rhythm 43
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 213.0
  • age_days: 4121
  • days_rel: 166
  • days_push: 35
  • n_releases_24m: 3

Full methodology

Adoption not part of the score

17498 stars · 1599 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

Ory Hydra is an OpenID Certified OAuth 2.0 and OpenID Connect provider server written in Go, handling token issuance, client management, and login/consent orchestration via headless APIs. It integrates with any existing identity system and can be self-hosted or consumed as a managed service on the Ory Network.

Use cases

  • issue OAuth2 access tokens for my APIs
  • add OpenID Connect single sign-on to my apps
  • self-host an OIDC provider that works with my existing user database
  • implement machine-to-machine client credentials flows
  • federate login with social providers via OIDC
  • secure microservices with OAuth2 token validation
  • run a certified OAuth2 server at high scale

When to choose

  • you need a hardened, OpenID Certified OAuth2/OIDC provider
  • you want full control over login and consent UI while delegating identity to your own system
  • you need low-latency, high-throughput token issuance
  • you want to self-host or use a managed cloud IAM service

When to avoid

  • you need a full identity management solution with registration, login UI, and MFA out of the box (use Ory Kratos instead)
  • you want a simple all-in-one auth library embedded in your app
  • you need SAML as a first-class protocol

Facets

service · maturity stable

auth authorization http-server api-framework security security apis backend web-development self-hosted windows self-hosted cloud go oauth2 openid-connect oidc sso identity federation token-issuance headless iam linux macos docker kubernetes

7 sources

Member repositories

RepositoryRoleHealth v2
ory/hydramain78

For agents

markdown · JSON · MCP: product_card(name="ory/hydra")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem