
Logto: Modern auth infrastructure for developers
Logto adds multi-tenancy, enterprise SSO, and RBAC to your SaaS or AI apps. All with OIDC and OAuth 2.1 made simple, fast, and developer-friendly.
What it is
Logto is an open-source authentication and user management infrastructure designed for developers building SaaS, AI, and B2B applications. It provides a developer-friendly solution for implementing authentication, authorization, and identity management features without building them from scratch.
Main Features
Authentication Methods
- Email and SMS passwordless authentication with one-time codes
- Social sign-in (Google, Apple, Discord, and others)
- Traditional password authentication
- Multi-factor authentication (MFA) with passkeys, authenticator apps, and backup codes
Authorization & Security
- Role-based access control (RBAC) for global and organization-level resources
- Enterprise Single Sign-On (SSO) integration with Okta, Entra, SAML, and other identity providers
- Multi-tenancy support for organizing users and resources across different organizations
Advanced Capabilities
- Machine-to-machine (M2M) authentication for APIs and microservices
- Impersonation functionality for customer support scenarios
- Personal access tokens (PATs) for scripts and automated processes
- Identity provider functionality for third-party applications
Protocol Support
- OAuth 2.1 and OpenID Connect (OIDC)
- SAML integration
- Standard authentication and authorization protocols
How it works
Web Application Integration
Developers integrate Logto into their applications using SDKs available for multiple frameworks including Next.js, React, Vue, Angular, Android, Swift, Go, .NET Core, Python, and vanilla JavaScript. The service handles the authentication flow, token management, and user sessions.
Multi-App Management
Logto provides a centralized platform for managing authentication across multiple applications, allowing consistent sign-in experiences and user management across different products and services.
Enterprise Deployment
For organizations requiring enterprise features, Logto supports SSO integration with existing identity providers, multi-tenancy for B2B scenarios, and advanced security controls through RBAC and MFA.
Key Points
- Open-source with self-hosting capabilities
- SOC 2 Type II certified for security and compliance
- Developer-first approach with extensive documentation and SDKs
- Supports both cloud-based and self-hosted deployments
- Designed to scale from small applications to enterprise-grade systems
- Provides a unified authentication experience across multiple applications
Additional Details
- Pricing: Free tier includes 50,000 monthly active users (MAUs); token-based pay-as-you-go pricing beyond free tier
- Availability: Cloud service available in EU, Australia, US, and Japan regions
- Requirements: Works with any modern web framework; no specific technology requirements
- Security Features: Argon2 password hashing, TLS encryption, database encryption, data isolation
- Management: Includes comprehensive management API for programmatic control
- Support: Community-driven support with developer-focused documentation and resources










