Ross ROSS = Recommend OSS · open-source software intelligence for agents

openziti/ziti

The parent project for OpenZiti. Here you will find the executables for a fully zero-trust, programmable network @OpenZiti observed · 2026-08-28

github.com/openziti/ziti · homepage · Go · Apache-2.0 (permissive) observed · 2026-08-28

Health v2 · maintenance only

98/100

  • Activity 99
  • Release rhythm 95
  • Longevity 100
How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: 14
  • age_days: 2476
  • days_rel: 32
  • days_push: 7
  • n_releases_24m: 34

Full methodology

Adoption not part of the score

4359 stars · 266 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-29, confidence not recorded

OpenZiti is an open-source zero-trust networking platform that provides programmable mesh overlay networks with cryptographic identity, policy-based authorization, and end-to-end encryption. It ships controller and router executables, tunnelers for existing apps, and SDKs for embedding zero-trust connectivity directly into new applications.

Use cases

  • replace VPNs with per-service zero-trust access
  • make internal APIs and services invisible to the internet with no open ports
  • give IoT devices and machine workloads unique cryptographic identities
  • securely connect services across clouds, data centers, and edge sites
  • embed zero-trust connectivity into applications via SDKs
  • implement microsegmentation and identity-based network policy

When to choose

  • you want to eliminate VPN concentrators and open inbound ports
  • you need identity-based access to internal services for users, devices, or workloads
  • you want an open-source, self-hostable zero-trust network access (ZTNA) solution
  • you are building applications and want zero-trust connectivity embedded via SDKs

When to avoid

  • you only need simple site-to-site VPN tunnels between a few networks
  • you lack the operational capacity to run controllers and edge routers
  • you need a fully managed service and prefer not to self-host (consider NetFoundry NaaS instead)

Facets

application · maturity active

networking security vpn cryptography networking security self-hosted privacy iot windows cross-platform go self-hosted zero-trust ztna overlay-network mesh-networking dark-services vpn-replacement microsegmentation sdks linux macos docker kubernetes

6 sources

Member repositories

RepositoryRoleHealth v2
openziti/zitimain98

For agents

markdown · JSON · MCP: product_card(name="openziti/ziti")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem