
Feature
Your own OAuth 2.1 / OIDC server
Issue tokens to your own apps and integrations over standard OAuth 2.1 and OpenID Connect endpoints — without building an authorization server yourself.
See the capabilities
Feature
Issue tokens to your own apps and integrations over standard OAuth 2.1 and OpenID Connect endpoints — without building an authorization server yourself.
See the capabilities
Feature
Companies sign in with the identity provider they already use, so their own directory stays the source of truth. What each plan includes is on the pricing page.
See pricing
Feature
Libraries for Node, React, React Native, Swift and Flutter, each major version carrying a dated support window.
SDK support
Feature
Move your existing users in bulk — original password hashes are preserved, so nobody has to set a new password.
Moving from Auth0
Feature
Data processing agreement, sub-processor register, records of processing, and data export and erasure — required by law, so they are never gated behind a paid plan.
See the DPA
Feature
Data processed in the European Union — no transfer outside the EEA as a default state.
Trust page
Feature
Any user can turn on multi-factor sign-in, and your app can demand a re-verification before a sensitive action — free, on every plan.
See the capabilities
Feature
Phishing-resistant passkeys, magic links and one-time email codes — on every plan, including Free.
Start freeLogin & user accounts · EU-hosted
EU-hosted in Falkenstein, GDPR-auditable, with a DPA ready to sign.
Built in public → @rakomidev
From Free to Enterprise, every plan ships the same authentication foundation — passkeys, MFA, and DPoP-bound tokens are not paywalled. You pay us for enterprise scale and operations, never for your users’ basic security.
Sign-in with Google, Microsoft, Apple, GitHub, LinkedIn, Facebook, Slack, and GitLab — 8 providers, available to configure on every plan, including Free.
Every user can turn on authenticator-app multi-factor login for their own account, free, on every plan.
Passwordless sign-in via a one-time emailed link, on every plan.
Passwordless sign-in via a one-time emailed code, on every plan.
Refresh tokens support cryptographic proof-of-possession binding, with automatic rotation and reuse detection, on every plan.
Passwordless, phishing-resistant sign-in with device passkeys, on every plan.
Re-verify identity with a passkey, password, magic link, or email code before a sensitive action — on every plan.
Users can link multiple sign-in methods (social providers, passkeys, email) to one account, on every plan.
Migrate existing users in bulk without forcing a password reset — original password hashes are preserved, on every plan.
Data processing agreement, sub-processor register, records of processing, and data export/erasure — required by law, so they are never gated behind a paid plan.
Free up to 10,000 MAU · No credit card required
⚠ Save this key now — it will never be shown again.
Lost your key? Log in to Dashboard → API Keys → Create New Key.
Go to Dashboard →