kratos is by ory — not by us.
We indexed this project so people can find it. We are not selling it, we host no copy of the code, and we are not affiliated with or endorsed by its authors — get it from them.
Indexed Aug 1, 2026 · 13,801 stars at index time. Maintainers: claiming verifies your identity and unlocks a higher assurance tier. Removal requests are honored.
kratos
Headless cloud-native authentication and identity management written in Go. Scales to a billion+ users. Replace Homegrow
by Open Source Community · New publisher
Headless cloud-native authentication and identity management written in Go. Scales to a billion+ users. Replace Homegrown, Auth0, Okta, Firebase with better UX and DX. Passkeys, Social Sign In, OIDC, Magic Link, Multi-Factor Auth, SMS, SAML, TOTP, and more. Runs everywhere, runs best on Ory Network.
**ory/kratos** is an open-source project by ory: Headless cloud-native authentication and identity management written in Go. Scales to a billion+ users. Replace Homegrown, Auth0, Okta, Firebase with better UX and DX. Passkeys, Social Sign In, OIDC, Magic Link, Multi-Factor Auth, SMS, SAML, TOTP, and more. Runs everywhere, runs best on Ory Network.. Indexed here so it can be found — not resold.
It is free. Get it from the upstream repository: https://github.com/ory/kratos
From the project's own README (excerpt, reproduced for discovery under its Apache-2.0 license):
Chat · Discussions · Newsletter · Docs · Try Ory Network · Jobs
Ory Kratos is an API first identity and user management system for cloud native applications. It centralizes login, registration, recovery, verification, and profile management flows so your services consume them instead of reimplementing them.
Table of contents • What is Ory Kratos? • Why Ory Kratos • Migrating from Auth0, Okta, and similar providers • Deployment options • Use Ory Kratos on the Ory Network • Self-host Ory Kratos • Quickstart • Who is using it?
What is Ory Kratos?
Ory Kratos is an API first identity and user management system that follows cloud architecture best practices. It focuses on core identity workflows that almost every application needs: • Self service login and registration • Account verification and recovery • Multi factor authentication • Profile and account management • Identity schemas and traits • Admin APIs for lifecycle management
We recommend starting with the Ory Kratos introduction docs to learn more about its architecture, feature set, and how it compares to other systems.
Why Ory Kratos
Ory Kratos is designed to: • Remove identity logic from your application code and expose it over HTTP APIs • Work well with any UI framework through browser based and native app flows • Scale to large numbers of identities and devices • Integrate with the rest of the Ory stack for OAuth2, OpenID Connect, and access control • Fit into modern cloud native environments such as Kubernetes and managed platforms
Migrating from Auth0, Okta, and similar providers
If you are migrating from Auth0, Okta, or another identity provider that uses OAuth2 / OpenID Connect based login, consider using Ory Hydra + Ory Kratos together: • Ory Hydra acts as the OAuth2 and OpenID…
Preview
See what it does before you commit. Previews show behavior, never source code.
Capabilities
Requirements & stack
Depends on
- → Programmatic API
- → PostgreSQL database
Credentials needed
None declared
Stack
Companions & conflicts
- None declared
Community
No endorsements yetEndorsements come from verified purchasers and vetted trusted reviewers, weighted by standing. They grade quality and trustworthiness — security is verified separately and community votes can never override the security gate.
Sign in with a verified purchase to endorse.
Trust Passport
Full passport →0/0 automated components pass. An automated score is never a security guarantee.
This listing is unclaimed, so publisher identity cannot be verified and it stays below the “verified” tier by design — that is a statement about the listing, not about the project’s quality. Our automated scans still ran; a maintainer who claims it unlocks identity verification.
- publisher identity Publisher status verified; 0 verification(s) on file
- malicious pattern scan No known malicious-behavior patterns detected in reviewed content
- capability contract All 0 observed capability reference(s) match the declared manifest
- agent safety scan No injection patterns in agent-readable content
- provenance No release signature or provenance attestation
- behavioral sandbox Not performed in this environment — requires the production isolated runner (docs/sandbox-requirements.md). No untrusted code is ever executed on the application host.
Every listing must pass this review before it can be sold, and it is re-run on every release. Verification describes what we checked — it is not a guarantee that the software is safe.
Versions
Full history →| Version | Channel | Released | Notes |
|---|---|---|---|
| 0.0.0 | stable | Aug 1, 2026 | Indexed listing — see the upstream repository for real release history. |
Similar products
Nearest matches by capability and description — not curated alternatives.