Authentication
authmenow
ExperimentalRust library for authmenow.com service
macaroons
ExperimentalCookie-like bearer credentials with caveats for distributed authorization
verihash
ExperimentalFormat-independent structured hashing algorithm
stscli
ExperimentalCLI to get temporary session tokens from Amazon's AWS STS Api.
zcred
ExperimentalModern authoriZation-centric credential format, ala SPKI/SDSI, Macaroons, and Vanadium
zsession
ExperimentalLightweight implementation of zcreds providing advanced session tokens
pam_groupmap
ExperimentalPAM Service module allowing to map users based on LDAP group membership
zhash
Experimentalzser content hashing algorithm
zser
ExperimentalA protobuf-inspired minimalistic serialization format with cryptographic authentication
gssapi-sys
ExperimentalFFI bindings to gssapi
vaultproxy
ExperimentalSecure credential sidecar for MCP servers — injects auth from Vaultwarden without exposing secrets to AI agents
bearer
ExperimentalCommand line utility to generate HTTP Authorization header with bearer tokens. This is achieved with OAuth2 authorization code and refresh token workflow.
prs
ExperimentalSecure, fast & convenient password manager with GPG & git
iron-csrf
ExperimentalCSRF protection for the web framework Iron
auth0wrap
ExperimentalA wrapper for the Auth0 Authentication API
poem-grants-proc-macro
ExperimentalA proc-macro way to validate user permissions for `poem-grants` crate.
oauthcli
ExperimentalImplementation of OAuth 1.0 (and Twitter's f*ckin' OAuth) Client
gssapi
ExperimentalRust bindings for gssapi libraries
olaf2
ExperimentalConvenient CLI authentication using OAuth2
caramel-client
ExperimentalA caramel client, to generate keys, requests and fetch updated certificates from a caramel server
riam
ExperimentalA IAM inspired policy engine for making authorization decisions
azure_jwt_async
ExperimentalA simple JWT validator for Microsoft Azure tokens that is async capable.
cryptonomicon
Experimentalunified crypto library
rs-borsh
ExperimentalBoring Shell
reacher-fast-socks5
ExperimentalFast SOCKS5 client/server implementation written in Rust async/.await (tokio)
rrole
ExperimentalAssume IAM roles with this Rust-based command line utility
vault_client
ExperimentalA client library for HashiCorp Vault
world_id
ExperimentalAn experiment in creating a distributed PKI.
tid-rs
ExperimentalTouchId integration for Rust
rocket-auth-login
ExperimentalLogin and authentication for rocket web apps. This crate provides functions to process login forms and to deal with private cookies easily.
passablewords
ExperimentalA library to check the strength of a password in a sane way
pswrd
ExperimentalStateless password vault
srp-conflux
ExperimentalSecure Remote Password (SRP) protocol implementation
stalwart-rs
ExperimentalStalwart Mail Server OAuth PKCE, device flow, and admin API extensions
aucpace-conflux
ExperimentalAuCPace protocol implementation
ghtkn
ExperimentalGitHub token management — OAuth device flow with keyring caching and config-driven app selection
opaque
ExperimentalOPAQUE Password-Authenticated Key Exchange protocol
ockam_vault_core
ExperimentalThe Ockam Vault trait.
botcha
ExperimentalRust SDK for Botcha — the reverse CAPTCHA for AI agents. Coming soon.
xentropy
ExperimentalPassword strength estimation via attacker guess-count modeling (guessing entropy, not Shannon entropy).
actix-web-sql-identity
ExperimentalA SQL-backend identity provider for Actix Web's identity system
captcha_srv
ExperimentalHigh performance Axum CAPTCHA service / 高性能 Axum 验证码服务
ferro-mcp-oauth
ExperimentalOAuth 2.1 authorization server for ferro-mcp-server endpoints
sudo-askpass
ExperimentalA sudo askpasss so inputting your password isn't boring
rowdy
Experimental`rowdy` is a Rocket based JSON Web token based authentication server.
network-check-sum
ExperimentalRFC 1141 / RFC 1071 check sums, psuedo-headers and cryptographic authentication
argonautica
ExperimentalIdiomatic Argon2 password hashing for Rust
fars
ExperimentalAn unofficial Rust client for the Firebase Auth REST API.
argonautica-c
ExperimentalC/C++ wrapper for argonautica
keychain-services
ExperimentalRust access to macOS Keychain Services, including TouchID-guarded access to cryptographic keys stored in the Secure Enclave Processor (SEP).