Ory Keto
Open source authorization server based on Google Zanzibar for access control

Ory Keto
Open source authorization server based on Google Zanzibar for access control
Ory Keto Description
Ory Keto is an open source authorization server that implements Google Zanzibar's access control model. The system provides permission and authorization services through gRPC and REST APIs, supporting RBAC (Role-Based Access Control), ABAC (Attribute-Based Access Control), and ACL (Access Control Lists). The authorization server is written in Go and offers SDKs for multiple programming languages. It integrates with existing data structures and identifiers, working behind any framework. The system performs permission checks to determine if entities (users, services, IoT devices) are allowed to perform specific actions. Ory Keto maintains low latency with 95th-percentile response times under 10ms and availability exceeding 99.99% in production environments. The system handles high request volumes while maintaining strong consistency across distributed deployments. The product offers three deployment models: open source self-hosted deployment, Ory Enterprise License (OEL) with additional features and support, and Ory Network as a fully managed SaaS solution. The authorization system can be deployed globally to provide fast response times regardless of user location. Ory Keto uses the Ory Permission Language for defining authorization policies, allowing developers to specify relationships between users, resources, and permissions through code-based policy definitions.
Ory Keto FAQ
Common questions about Ory Keto including features, pricing, alternatives, and user reviews.
Ory Keto is Open source authorization server based on Google Zanzibar for access control developed by Ory Corp. It is a IAM solution designed to help security teams with Authorization, Access Control, RBAC.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox