Identity that fits the way your app works.
Hosted sign-in, organizations, and permissions, designed together. Give people a place in your app, and the right access when they get there.
One integration, three foundations
Recognize the person
Let people sign in with passwords, social accounts, email codes, or magic links. Add authenticator-based MFA and recovery codes, with hosted pages that carry your name, logo, and colors.
Give them a place
Group your customers into organizations with invitations, memberships, and roles. One person can belong to several organizations with different access in each.
Resolve what they can do
Define permissions in your application's own words. Assign roles across a tenant, inside an organization, or on an individual resource. Use token claims or check the current grants when a decision needs to be up to date.
Choose where to start
Udibo Identity manages sign-in and accounts. Your application owns its data, session integration, and authorization decisions. Start with one successful sign-in, an authenticated API request, and a sign-out before adding more.
Want to operate authentication yourself? The open-source @udibo/oauth2 package also provides authorization and resource servers, clients, Hono integration, and React bindings. You can try it locally without a hosted account.
Know what you are choosing
The hosted service is in private beta. Password, social, email-code, and magic-link sign-in are available, along with authenticator-based MFA. Hosted passkeys, SAML federation, and SCIM provisioning are not available yet.
Connect through OAuth 2.0 and OpenID Connect. Use your own branding and export your data when you need to move. Udibo's own dashboard uses the same identity service.
Compare the options or read the production checklist before planning your launch.
Start free, grow with usage
Every released self-service feature is included on Free. Paid capacity is the next step when your application needs more room. The current pricing is a preview; allowances, rates, and terms will be validated before subscriptions open.

