Authlier

Standards and dependencies

Security guidance, protocol standards, and established Go libraries used by Authlier.

Authlier does not invent password hashing, WebAuthn, OAuth, OIDC, SAML, or TOTP. It builds its server-side authentication flows on published standards and established Go libraries, then adds consistent configuration, storage, session handling, and HTTP routes.

Security guidance

Authlier uses the following OWASP material as engineering and verification input:

These references guide the implementation and review of Authlier. They do not mean that OWASP has certified Authlier or that every application using the library automatically satisfies ASVS. The Security guide explains the controls that remain the application's responsibility.

Protocol standards

Go libraries

Authlier uses focused libraries for protocol and cryptographic work:

Official storage adapters use the established PostgreSQL, MySQL, MongoDB, and Redis Go drivers. The Storage guide explains when to choose each adapter.

On this page