Skip to content
AI Marketplace OS
Free · open sourceApache-2.0Unclaimed listing

keycloak is by keycloak — not by us.

We indexed this project so people can find it. We are not selling it, we host no copy of the code, and we are not affiliated with or endorsed by its authors — get it from them.

Indexed Aug 1, 2026 · 35,934 stars at index time. Maintainers: claiming verifies your identity and unlocks a higher assurance tier. Removal requests are honored.

ApplicationUnclaimed · identity unverifiedTrust: not scoredactively maintainedopen source

keycloak

Open Source Identity and Access Management For Modern Applications and Services

by Open Source Community · New publisher

Open Source Identity and Access Management For Modern Applications and Services

**keycloak/keycloak** is an open-source project by keycloak: Open Source Identity and Access Management For Modern Applications and Services. Indexed here so it can be found — not resold.

It is free. Get it from the upstream repository: https://github.com/keycloak/keycloak

From the project's own README (excerpt, reproduced for discovery under its Apache-2.0 license):

Open Source Identity and Access Management

Add authentication to applications and secure services with minimum effort. No need to deal with storing users or authenticating users.

Keycloak provides user federation, strong authentication, user management, fine-grained authorization, and more.

Help and Documentation

Documentation User Mailing List - Mailing list for help and general questions about Keycloak Join #keycloak for general questions, or #keycloak-dev on Slack for design and development discussions, by creating an account at https://slack.cncf.io/.

Reporting Security Vulnerabilities

If you have found a security vulnerability, please look at the instructions on how to properly report it.

Reporting an issue

If you believe you have discovered a defect in Keycloak, please open an issue. Please remember to provide a good summary, description as well as steps to reproduce the issue.

Getting started

To run Keycloak, download the distribution from our website. Unzip and run:

bin/kc.[sh bat] start-dev

Alternatively, you can use the Docker image by running:

docker run quay.io/keycloak/keycloak start-dev For more details refer to the Keycloak Documentation.

Building from Source

To build from source, refer to the building and working with the code base guide.

Testing

To run tests, refer to the running tests guide.

Writing Tests

To write tests, refer to the writing tests guide.

Contributing

Before contributing to Keycloak, please read our contributing guidelines. Participation in the Keycloak project is governed by the CNCF Code of Conduct.

Joining a community meeting is a great way to get involved and help shape the future of Keycloak.

Code of Conduct

We are committed to providing a safe, welcoming, and constructive environment for all…

Preview

See what it does before you commit. Previews show behavior, never source code.

Capabilities

AuthenticationRole-based access controlAudit logsTenant isolationSSO / SAML

Requirements & stack

Depends on

  • PostgreSQL database

Credentials needed

None declared

Stack

java

Companions & conflicts

  • None declared

Community

No endorsements yet

Endorsements come from verified purchasers and vetted trusted reviewers, weighted by standing. They grade quality and trustworthiness — security is verified separately and community votes can never override the security gate.

Sign in with a verified purchase to endorse.

Trust Passport

Full passport →

0/0 automated components pass. An automated score is never a security guarantee.

This listing is unclaimed, so publisher identity cannot be verified and it stays below the “verified” tier by design — that is a statement about the listing, not about the project’s quality. Our automated scans still ran; a maintainer who claims it unlocks identity verification.

! Not verifiedreviewed Aug 1, 2026 · re-verification due Oct 30, 2026
  • publisher identity Publisher status verified; 0 verification(s) on file
  • malicious pattern scan No known malicious-behavior patterns detected in reviewed content
  • capability contract All 0 observed capability reference(s) match the declared manifest
  • agent safety scan No injection patterns in agent-readable content
  • provenance No release signature or provenance attestation
  • behavioral sandbox Not performed in this environment — requires the production isolated runner (docs/sandbox-requirements.md). No untrusted code is ever executed on the application host.

Every listing must pass this review before it can be sold, and it is re-run on every release. Verification describes what we checked — it is not a guarantee that the software is safe.

VersionChannelReleasedNotes
0.0.0stableAug 1, 2026Indexed listing — see the upstream repository for real release history.

Similar products

Nearest matches by capability and description — not curated alternatives.