ory/kratos
The most scalable and customizable identity server on the market. Replace your Homegrown, Auth0, Okta, Firebase with better UX and DX. Has all the tablestakes: Passkeys, Social Sign In, Multi-Factor Auth, SMS, SAML, TOTP, and more. Written in Go, cloud native, headless, API-first. Available as a service on Ory Network and for self-hosters.
GoApache-2.0
Issues
- 1
Hook `require_verified_address`: option to require all of the addresses to be verified
#4117 opened by renom - 1
Verify email address before registration
#4096 opened by doneHappyPlay - 0
Kratos is unable to contact NAT64 addresses even when `clients.http.disallow_private_ip_ranges` is false
#4142 opened by tesinormed - 11
Requesting a login code returns HTTP 400
#4052 opened by micheljung - 0
- 0
- 0
OIDC Provider Filtering in Self-Hosted Kratos Instance
#4135 opened by mapepro - 0
- 0
Entra App installation failure
#4133 opened by DimuthuSig - 2
Jsonnet flag to skip triggering of web hook
#4130 opened by renom - 0
- 1
- 3
Add support for JWE for kratos session JWT
#4126 opened by geekodour - 12
Credential Identifiers Are Appended, Not Updated, When Changing the `email` Trait
#4076 opened by 3schwartz - 7
If user sits on Account-Experience login page, they get a login flow expired error
#4097 opened by calebgrollins - 0
Augment PKCE autodiscovery
#4125 opened by alnr - 1
CSRF Error during Login Flow despite passing cookies, X-CSRF-Token headers on SvelteKit Server Side.
#4030 opened by devNamanG - 3
Cannot patch identity with op: 'test', 'copy', 'move'
#4032 opened by fmiqbal - 0
Return conflicting rows on batch import
#4072 opened by zepatrik - 3
- 0
Before verification webhook not called
#4110 opened by camero2734 - 0
`ErrCompletedByStrategy` is not an error, but shows up in telemetry as such.
#4109 opened by beanow-at-crabnebula - 0
Verification is automatically shown for password flow even if required auth is disabled
#4105 opened by aeneasr - 0
- 9
Support for PKCE in OIDC social providers
#4009 opened by OskarsPakers - 1
Ory Kratos quickstart error
#4094 opened by JackySu - 4
Unable to send verification SMS on registration flow when set custom http port
#4099 opened by eyoboue - 1
Refresh identity traits on social / SSO login
#4084 opened by Sese-Schneider - 1
Mark email addresses as valid after completing admin initiated recovery (invite) flow with code method
#4090 opened by winterec - 0
Add request data to web hook ctx
#4082 opened by renom - 0
Add old identity to web hook ctx for settings flow
#4081 opened by renom - 0
Disallow updating (editing) of verified identifiers
#4080 opened by renom - 1
- 2
profile:back button method not working
#4010 opened by blitss - 0
- 0
Clients generated from OpenAPI specification cannot handle Passkey authentication method
#4063 opened by Saancreed - 1
Internal Server Error: Unable to increment the message's "send_count" field
#4058 opened by micheljung - 1
json: unknown field - use_password_migration_hook
#4039 opened by jimmills - 0
Email update does not indicate `show_verification_ui` if session is no longer privileged
#4053 opened by aeneasr - 0
disallow_private_ip_ranges and private_ip_exception_urls settings don't work as expected
#4049 opened by David-Wobrock - 0
- 2
[With Hdyra]Kratos return null for login_challenge when previous OIDC for the same client not complete.
#4024 opened by EverettSummer - 0
Upgrade go-webauthn to 0.11.0
#4034 opened by aeneasr - 3
- 0
- 0
Session ID is nil in post login password webhook
#4016 opened by b-pagis - 0
Getting error on email submission on recovery - "message": "named insert: ERROR: column \"channel\" of relation \"courier_messages\" does not exist (SQLSTATE 42703)"
#4014 opened by tanmayvaij - 0
- 0
Add Support for Masking Identifiers (Email and Phone) in Settings and Interfaces
#4012 opened by VoDmAl - 0
Cookie setting SameSite not applied when accessing provider from iframe hosted app in MS Dynamics environment
#4006 opened by Saibot27