Authentication & Authorization Packages
Authentication, authorization, and identity/session libraries for handling login, permissions, and access control securely (JWT, Passport, Sanctum).
Packages in Authentication & Authorization
Kind
Sort:Used by Most Apps
OAuth2 Google Provider
Google OAuth 2.0 provider for The PHP League's OAuth 2.0 Client
tower-sessions
Async, pluggable session middleware for tower and axum web applications.
opaque-ke
Rust implementation of the OPAQUE augmented password-authenticated key exchange protocol
Filament Impersonate
A FilamentPHP plugin that lets admins impersonate users with one click and log back out cleanly
python-youtube
A Python SDK for the YouTube Data API v3, with OAuth2 auth, typed models, and full resource coverage.
MetaMask SDK
Connects JavaScript, React, and React Native dapps to a user's MetaMask browser extension or mobile wallet.
Flask-Bcrypt
A small Flask extension for bcrypt password hashing and verification
pyrad
A pure-Python library for building RADIUS clients and servers, covering authentication, accounting, and Change-of-Authorization out of the box.
@fastify/passport
A Fastify-native port of Passport.js that authenticates requests with pluggable strategies, sessions, and typed hooks.
php-jwt
Ultra-lightweight, dependency-free JSON Web Token (JWT) library for PHP 7 and 8.
jwt-simple
A fast, safe-by-default Rust library for creating and verifying JWT and JWE tokens across every major signing and encryption algorithm.
zxcvbn-rs
A Rust port of Dropbox's zxcvbn password strength estimator, scoring passwords 0-4 with pattern matching instead of arbitrary composition rules.
LinkedIn API Python Client
Official Python client for LinkedIn's Rest.li APIs, wrapping OAuth2, versioned endpoints, and query tunneling into typed request/response calls.
Biscuit-Auth
Rust implementation of Biscuit — a decentralized authorization token with offline attenuation and a Datalog policy language.
sanic-jwt
JWT authentication, refresh tokens, and scope-based permissions for the Sanic async web framework.
@kubiks/otel-better-auth
One-line OpenTelemetry instrumentation for Better Auth, tracing every sign-in, sign-up, OAuth callback, and session operation.
@hapi/cookie
Cookie-based session authentication scheme for hapi.js servers, backed by Iron-encrypted cookies.
tauri-plugin-oauth
A Tauri plugin that spawns a temporary localhost server to capture browser-based OAuth redirects in desktop apps.
requests-aws4auth
Amazon Web Services signature version 4 authentication for the Python Requests library.
biscuit
A typed Rust library for JWT, JWS, and JWE - full JOSE token signing, encryption, and validation built on ring.
opendal-reqsign
AWS Signature Version 4 request signing for Rust, with a full default credential chain and STS AssumeRole support.
Sanic-CORS
A Sanic extension for Cross-Origin Resource Sharing (CORS), enabling cross-origin AJAX for Sanic apps.
Duo Client
Official Python SDK for the Duo Security Auth, Admin, and Accounts REST APIs.
SecretStorage
Python bindings to the Freedesktop.org Secret Service D-Bus API for secure password storage on Linux.