Casdoor is a self-hosted, UI-first identity and access management (IAM) and single sign-on (SSO) server written in Go with a React web console. It implements OAuth 2.0, OIDC, SAML, CAS, LDAP, RADIUS, SCIM, WebAuthn / passkeys, TOTP and MFA, connects to Google Workspace, Microsoft Entra ID, GitHub and many other identity providers, and can act as an auth gateway for MCP servers and AI agents.
It gives teams that cannot or do not want to depend on a proprietary identity cloud a complete login system they can run themselves: user and organisation management, sign-in pages, tokens, permissions and audit logs, deployable as a single binary or container on MySQL, PostgreSQL, SQL Server or SQLite.
Usage: 14,500+ GitHub stars, 1,800+ forks, 300+ contributors, and more than 2.2 million Docker Hub pulls (casbin/casdoor and casbin/casdoor-all-in-one). Official SDKs exist for Go, Java, JavaScript, Python, PHP, .NET, Rust, C++, Dart / Flutter, Swift, Android and others. Open-source projects that ship with Casdoor as their login system include iFlytek astron-agent, OpenCSG CSGHub and AgentSociety from Tsinghua University. Releases are published continuously from the master branch.
Fund this project