7,380 open-source and SaaS tools, with GitHub stats refreshed every day.

ZITADEL

Open source

An open-source identity and access management platform with SSO, MFA, passkeys, OIDC, SAML, SCIM and native multi-tenancy, available self-hosted or as a cloud service.

zitadel.com
ZITADEL homepage screenshot
GitHub stars
15k
Last commit
today
Repository age
6 years
Version
v4.19.4
Licence
AGPL-3.0
Self-hosted
Yes

About ZITADEL

ZITADEL is an identity and access management platform, open source, for teams that need more than basic login. It targets SaaS products, B2B platforms and self-hosted IAM stacks, and bundles single sign-on, multi-factor authentication, passkeys, OIDC, SAML and SCIM in an API-first design, with an emphasis on a mature multi-tenancy model.

A comparison table in the README sets it against FusionAuth, Keycloak and Auth0 or Okta on points such as open-source status, self-hosting, infrastructure-level tenants, native B2B organizations and a comprehensive event-stream audit trail. Topics list standards and features including OAuth 2, OpenID Connect, FIDO2, 2FA and passkeys. The positioning is that you can own the identity layer without vendor lock-in while still getting a polished product.

ZITADEL is written in Go and licensed under AGPL-3.0, with a website, chat, docs and blog. You can run it yourself or use the vendor's managed cloud. It suits developers and security teams building multi-tenant applications who want a self-hostable alternative to commercial identity providers.

Key features

  • Single sign-on with OIDC and SAML
  • Multi-factor authentication and passkeys
  • SCIM user provisioning support
  • Native multi-tenancy with B2B organizations
  • Event-stream audit trail
  • API-first, self-hostable design

Good fit for

  • →Identity layer for multi-tenant SaaS
  • →Replacing Auth0 or Okta with a self-hosted IAM
  • →B2B customer organization management
Built with
Go
Tags
identity
iam
sso
oidc
saml
mfa
passkeys
multi-tenancy
golang
self-hosted

ZITADEL: questions and answers

What is ZITADEL used for?
ZITADEL is an open-source identity and access management platform with SSO, MFA, passkeys, OIDC, SAML, SCIM and native multi-tenancy, available self-hosted or as a cloud service. It is a good fit for identity layer for multi-tenant SaaS, replacing Auth0 or Okta with a self-hosted IAM and B2B customer organization management.
Is ZITADEL open source?
Yes. ZITADEL is open source under the AGPL-3.0 licence. Its source code is on GitHub at zitadel/zitadel and is written mainly in Go.
Is ZITADEL free?
Yes. ZITADEL is open source, so the software itself is free to use. A managed cloud version is also available, with paid plans from $100 per month.
Can I self-host ZITADEL?
Yes. ZITADEL can be self-hosted on your own server or infrastructure.
What is ZITADEL an alternative to?
ZITADEL is an open-source alternative to Auth0, Amazon Cognito, Microsoft Entra ID and Frontegg. Other open-source alternatives to Auth0 include Logto, Keycloak and Hanko.
Is ZITADEL actively maintained?
Yes. The most recent commit to ZITADEL was on 2 October 2026, and the latest release is v4.19.4, published on 1 October 2026. The project has 15k stars on GitHub.

Open-source alternatives to ZITADEL

See all

SaaS alternatives to ZITADEL

See all