Modern Identity Provider — GDPR-compliant and self-hosted

Authentik is a modern, Python-based open-source identity provider (IdP). It speaks OAuth2, OpenID Connect, SAML 2.0, LDAP and proxy authentication and is an excellent fit for centralised single sign-on across internal services, customer portals and SaaS integrations — fully on-premise or in sovereign EU cloud.

Capabilities: flexible authentication flows (drag-and-drop), multi-factor authentication (TOTP, WebAuthn/Passkeys, Duo), Outpost architecture for forward-auth in front of any web app, fine-grained RBAC, self-service password reset and brokering to Active Directory, LDAP, Google, GitHub and arbitrary OIDC providers.

We deliver: architecture, high availability, integration with existing directories, migration from Microsoft Entra ID/Okta/Auth0 and ongoing operations — a sovereign alternative without US cloud dependency.