ZITADEL
What is ZITADEL?
ZITADEL is an identity and access management (IAM) platform that provides authentication, authorization, and user management services for applications and APIs.
- Managed and self-hosted identity and access management platform (identity and access)
- Support for OpenID Connect (OIDC) and Open Authorization 2.0 (OAuth 2.0) based authentication and authorization flows (identity and access)
- User, organization, and project management with Role-Based Access Control (RBAC) (identity and access)
- Multi-factor authentication and passwordless login options (security)
- APIs, SDKs, and integrations for embedding login, self-service, and administration into applications (developer tooling)
Show more
More About ZITADEL
ZITADEL is an identity and access management (IAM) platform designed to handle authentication and authorization for web, mobile, and machine-to-machine workloads. It targets use cases where enterprises and software providers need to centralize identity, enforce access control policies, and offer tenant-aware user management across multiple applications and services.
The platform exposes standards-based protocols, including (identity and access) support for OIDC and OAuth 2.0, enabling it to act as an authorization server and Identity Provider (IdP) for modern applications and APIs. Through these protocols, ZITADEL issues tokens for user and service authentication, manages consent, and supports Single Sign-On (SSO) across multiple relying parties.
ZITADEL provides (identity and access) capabilities for user lifecycle and account management, including user registration, profile management, and credential handling. It introduces a hierarchical model with organizations, projects, and applications, combined with (identity and access) RBAC to define permissions and map them to users or service accounts. This structure supports multi-tenant setups where different business units, customers, or partner organizations can be isolated while sharing a common platform.
On the security side, ZITADEL supports (security) multi-factor authentication and can be configured for passwordless login scenarios, improving protection against credential theft. It also integrates with external identity providers via (identity and access) federation based on standard protocols, which allows enterprises to connect existing corporate directories or social identity providers for SSO.
For developers and operators, ZITADEL exposes (developer tooling) Representational State Transfer (REST) and gRPC APIs, SDKs, and admin tools to automate provisioning, integrate custom portals, and embed login and self-service flows. It can be deployed as a managed cloud service or as (infrastructure) self-hosted software, fitting both Software-as-a-Service (SaaS) product architectures and internal enterprise platforms. The system is commonly deployed as part of an API-centric or microservices-oriented architecture where token-based security and centralized policy enforcement are required.
Within a technical taxonomy, ZITADEL is categorized as an (identity and access) IAM and customer identity and access management (CIAM) platform, focused on authentication, authorization, and user management for digital applications and APIs, with standards-based interoperability and tooling for DevOps and platform engineering teams.