Zitadel
Zitadel handles provides a comprehensive identity management solution as a self-hosted solution.
Overview
ZITADEL - Identity infrastructure, simplified for you. ZITADEL is the identity infrastructure platform that is built for developers and works for all users and applications. The project has 13K+ GitHub stars and is licensed under AGPL-3.0.
Key Features
Source: GitHub README
- Single Sign On (SSO) · Username/Password · Passkeys (FIDO2 / WebAuthn)
- MFA: OTP, U2F, OTP Email, OTP SMS
- LDAP · Enterprise IdPs and social logins
- OpenID Connect certified · SAML 2.0 · Device authorization
- Machine-to-machine: JWT Profile, PAT, Client Credentials
- Token exchange and impersonation
- Custom sessions for flows beyond OIDC/SAML
- Hosted Login V2
- Identity brokering with pre-built IdP templates
- Customizable B2B onboarding with self-service for customers
Getting Started
Source: GitHub README
curl -LO https://raw.githubusercontent.com/zitadel/zitadel/main/deploy/compose/docker-compose.yml
&& curl -LO https://raw.githubusercontent.com/zitadel/zitadel/main/deploy/compose/.env.example
&& cp .env.example .env
&& docker compose up -d —wait
Full deployment guides:
- Docker Compose
- Kubernetes
> Need professional support for your self-hosted deployment? Contact us.
## Normalized Features
*Source: tool-features-normalized.json*
accessibility, audit logs, branding, docker, docker compose, kubernetes, ldap, multi user, oauth, postgresql, rbac, rest api, sso, templates, two factor auth, webhooks.
<DeploymentOptions slug={frontmatter.slug} /> Features
Authentication & Access
- LDAP / Active Directory
- Multi-User Support
- OAuth / Social Login
- Role-Based Access Control
- Single Sign-On (SSO)
- Two-Factor Authentication
Integrations & APIs
- REST API
- Webhooks
Customization & Branding
- Custom Branding
- Templates
Security & Privacy
- Audit Logs
Localization & Accessibility
- Accessibility (a11y)
Compare Zitadel
Related Security & Authentication Tools
View all 159 →Ghidra
66KA free, open-source software reverse engineering framework created by the NSA — disassemble, decompile, and analyze compiled code on any platform.
PocketBase
58KOpen-source backend in a single 12 MB binary — realtime database, auth, file storage, and admin dashboard. No Docker, no Postgres, just run it.
Vaultwarden
57KLightweight, self-hosted Bitwarden-compatible password manager written in Rust. Uses 10x less RAM than the official server and works with all Bitwarden clients.
Zen Browser
41KZen Browser is a privacy-focused, beautifully designed Firefox fork with a unique sidebar tab layout, split views, and built-in content blocking — no telemetry, no tracking.
Vault
35KManage secrets and protect sensitive data. Securely store and control access to tokens, passwords, certificates, and encryption keys.
KeyCloak
33KOpen source identity and access management. Add authentication to applications and secure services with minimum effort.