Cerbos
Scalable, decoupled authorization service
Cerbos is an open-source, stateless authorization layer that decouples access control logic from application code. It is self-hosted to evaluate context-aware permission policies for any application.
Key features
- Decoupled authorization
- Policy as code
- gRPC and REST APIs
- Stateless and scalable
Strengths
- Released under the Apache-2.0 license
- First-class Docker support for quick deployment
- Kubernetes-ready with Helm charts available
- Active community (4.6k GitHub stars)
Cerbos replaces
Compare Cerbos
6 head-to-head comparisons.
Similar identity & sso apps
Keycloak
Identity & SSOOpen-source identity and access management for modern apps
Replaces Okta, Auth0
Casbin
Identity & SSOAuthorization library supporting many access control models
Replaces Auth0 RBAC
Ory Hydra
Identity & SSOCertified OAuth 2.0 and OpenID Connect server
Replaces Okta, Auth0
SuperTokens
Identity & SSOOpen-source user authentication you can self-host
Replaces Auth0, Firebase Auth
ZITADEL
Identity & SSOCloud-native identity infrastructure with multi-tenancy built
Replaces Auth0, Okta
Logto
Identity & SSODeveloper-friendly authentication and authorization platform
Replaces Auth0, Firebase Auth