SaaSHub helps you find the best software and product alternatives Learn more →
Top 23 Abac Open-Source Projects
-
casbin
An authorization library that supports access control models like ACL, RBAC, ABAC in Golang: https://discord.gg/S5UjpzGZjN
-
spicedb
Open Source, Google Zanzibar-inspired permissions database to enable fine-grained access control for customer applications
-
InfluxDB
Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
-
node-casbin
An authorization library that supports access control models like ACL, RBAC, ABAC in Node.js and Browser
-
OPAL
Policy and data administration, distribution, and real-time updates on top of Policy Agents (OPA, Cedar, ...) (by permitio)
-
WorkOS
The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.
-
pycasbin
An authorization library that supports access control models like ACL, RBAC, ABAC in Python
-
Casbin.NET
An authorization library that supports access control models like ACL, RBAC, ABAC in .NET (C#)
-
warrant
Warrant is a highly scalable, centralized authorization service based on Google Zanzibar, used for defining, querying, and auditing application authorization models and access control rules.
-
casbin-rs
An authorization library that supports access control models like ACL, RBAC, ABAC in Rust.
-
laravel-authz
An authorization library that supports access control models like ACL, RBAC, ABAC in Laravel.
-
casbin-cpp
An authorization library that supports access control models like ACL, RBAC, ABAC in C/C++
-
lua-casbin
An authorization library that supports access control models like ACL, RBAC, ABAC in Lua (Kong, APISIX, OpenResty)
-
AAuth
Hierarchical Rol-Permission Based Laravel Auth Package with Limitless Hierarchical Level of Organizations
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
https://casbin.org/ (multiple approaches, multiple languages, provider) Open source authZ library that has support for many access control models (ACL, RBAC, ABAC, …) and many languages (Go, Java, Node.js, JS, Rust, …). While somewhat complex, it is also powerful and flexible. They also have their Casdoor platform, which is authN and authZ provider.
Project mention: How do you manage transactions in Go? Do we really need to use one transaction for each request? | /r/golang | 2023-06-02Have you taken a look at SpiceDB? The Authzed blog has a few posts that are useful to improving your understanding -- I can think of two: New Enemies and Writing relationships to SpiceDB.
Link to GitHub -->
Another tool that can help you deploy a Policy as Code-based solution in 2024 is OPAL, the Open Policy Administration Layer. OPAL is an open-source project that provides a comprehensive policy-based service for applications. With one click, you can deploy a full architecture of a Git-based centralized policy store with decentralized policy engines running as a sidecar with your applications. OPAL also provides a unified architecture to sync all the data you need with the policy engines.
OPA is a great tool for implementing a policy-as-code system. But if you're trying to use it for application authorization (e.g. fine-grained authz for B2B SaaS or a set of internal applications), you may find that its policy story is strong, but it doesn't really have a "data plane": you either store data in a data.json file and rebuild the policy any time that data changes, or make an http.send call out of the policy to fetch dynamic data.
Check out Topaz [0], which uses OPA as its decision engine, but adds a data plane that is based on the ReBAC ideas explored in the Google Zanzibar [1] paper.
Disclaimer: I work on the team [2] that builds and maintains the Topaz project.
[0] https://www.topaz.sh
[1] https://research.google/pubs/zanzibar-googles-consistent-glo...
[2] https://www.aserto.com
Project mention: A list of SaaS, PaaS and IaaS offerings that have free tiers of interest to devops and infradev | dev.to | 2024-02-05Warrant — Hosted enterprise-grade authorization and access control service for your apps. The free tier includes 1 million monthly API requests and 1,000 authz rules.
Abac related posts
- Show HN: Topaz 0.30 – OSS authz service combining the best of OPA and Zanzibar
- Policy as Code vs. Policy as Graph Comparison
- Authorization back end that comes with a front end
- Authorization back end that comes with a UI for RBAC and ABAC
- Authz: A centralized authorization back end with its front end
- AWS Cognito - Am I doing this right?
- authz: Authorization backend that comes with a UI for RBAC and ABAC permissions
-
A note from our sponsor - SaaSHub
www.saashub.com | 24 Apr 2024
Index
What are some of the best open-source Abac projects? This list will help you:
Project | Stars | |
---|---|---|
1 | casbin | 16,818 |
2 | spicedb | 4,489 |
3 | oso | 3,387 |
4 | node-casbin | 2,471 |
5 | jCasbin | 2,318 |
6 | OPAL | 2,281 |
7 | accesscontrol | 2,118 |
8 | pycasbin | 1,274 |
9 | Casbin.NET | 1,096 |
10 | topaz | 971 |
11 | warrant | 967 |
12 | awesome-auth | 889 |
13 | casbin-rs | 788 |
14 | awesome-authorization | 371 |
15 | casbin-server | 296 |
16 | laravel-authz | 267 |
17 | authz | 227 |
18 | casbin-cpp | 216 |
19 | lua-casbin | 53 |
20 | sqlx-adapter | 44 |
21 | restrict | 38 |
22 | AAuth | 36 |
23 | k8s-gatekeeper | 35 |
Sponsored