WorkOS Blog
https://workos.com
Developer APIs / SDKs for enterprise-ready features like Single Sign-On (SSO/SAML), Passwordless Authentication, Directory Sync (SCIM), Audit Trail (SIEM), and more. Get started for free.
フィード
Passwordless authentication: your options explained
WorkOS Blog
Do you want to add passwordless authentication to your app and don’t know where to start? Read our guide for an overview of the top available methods, their pros and cons, and which one might be the best for you.
5日前
What does it mean to distill a machine learning model or LLM?
WorkOS Blog
Distillation is a technique for creating smaller, faster, and more efficient versions of neural networks while retaining most of their performance.
5日前
Email deliverability and spam prevention: why your emails aren’t getting delivered and how to fix it
WorkOS Blog
Do your emails end up in spam? Read this guide to see what you can do to optimize your email deliverability and avoid the spam folder.
6日前
How to run DeepSeek locally
2
WorkOS Blog
DeepSeek R1 is an open-source LLM for conversational AI, coding, and problem-solving. Here's how to run it locally.
7日前
What is Authentik?
1
WorkOS Blog
Authentik is an open-source Identity Provider (IdP) that allows you to self-host user authentication, single sign-on (SSO), and access controls.
8日前
Defending against bad actors: WorkOS Radar vs Castle vs Auth0 vs Stytch vs Arcjet
WorkOS Blog
Which products can help you safeguard your app against bots and hackers and how do they compare? Learn what you should look for and what features each vendor offers.
9日前
What is Ente Auth?
WorkOS Blog
Ente Auth is a modern, secure, and user-friendly two-factor authentication (2FA) solution designed to safeguard online accounts with minimal hassle.
13日前
Shadcn-ui: What is it, and why do you care?
WorkOS Blog
shadcn-ui is a set of reusable React components focused on accessibility, customization, and developer control. It stands out from typical UI libraries by allowing you to own the code directly, thereby reducing external dependencies and version lock-ins.
13日前
Breaking the AI Mold: China's DeepSeek-R1 pushes local and open AI forward
WorkOS Blog
Announced just this week, DeepSeek-R1 is positioned as a direct competitor to incumbent LLM creators’ flagship models, promising robust reasoning, mathematics, and coding capabilities.
13日前
Google OAuth vulnerability can expose sensitive data of failed startups
WorkOS Blog
Read about how failed startups that used Google SSO might be susceptible to leaking sensitive information of employees.
14日前
How to build SAML SSO with WorkOS, JumpCloud, and Node
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add SSO to your app using SAML, JumpCloud, Node, and WorkOS.
15日前
Understanding Zero Trust security
WorkOS Blog
Learn what Zero Trust security is and how it came to be (spoiler alert: Chinese state-sponsored hackers are involved).
16日前
How WorkOS Radar does rate limiting with device fingerprinting
WorkOS Blog
Radar can detect threats even when they switch up or spoof their IP address. Here's how.
19日前
How do you know when you’ve hit product-market fit?
WorkOS Blog
How will you know once you've found Product Market Fit? Through these signs, which also tell you that you're ready to go upmarket after enterprise customers.
20日前
How WorkOS Radar's bot detection works
WorkOS Blog
Every day, countless bots attempt to breach applications by exploiting authentication systems. Here's how WorkOS Radar stops them.
20日前
How WorkOS Radar really works
WorkOS Blog
How does WorkOS Radar really work? How do you install and set it up and what does it reveal?
20日前
What is device fingerprinting and how does it work?
WorkOS Blog
Your device leaves a unique trail of digital breadcrumbs whenever you open a web browser. These aren't cookies that you can delete – they're subtle signals from your hardware and software that combine to create something far more permanent: your device fingerprint.
20日前
How to build SAML SSO with WorkOS, Okta, and Python
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add SSO to your app using SAML, Okta, Python, and WorkOS.
21日前
How to build SAML SSO with WorkOS, Okta, and Ruby
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add SSO to your app using SAML, Okta, Ruby, and WorkOS.
22日前
How to build a user management dashboard with WorkOS and Node
WorkOS Blog
Step-by-step tutorial on how to add basic user management functionality to your app using Node.js and WorkOS.
23日前
Best practices for secrets management
WorkOS Blog
This guide explains best practices for keeping your secrets where they belong—secured away from public code and prying eyes.
1ヶ月前
How to implement row-level security with WorkOS FGA and Postgres: tutorial and code
WorkOS Blog
Your support ticketing system contains sensitive data from multiple organizations and customers. How do you ensure users only see tickets they're authorized to view?
1ヶ月前
How to build SAML SSO with WorkOS, Okta, and Go
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add SSO to your app using SAML, Okta, Go, and WorkOS.
1ヶ月前
How to build Log in with Google using Go and WorkOS
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add Log in with Google to your app using Go and WorkOS.
1ヶ月前
We shipped our auth server to your browser with WASM. Here's how it's going
WorkOS Blog
Picture this: you've built a powerful authorization system based on Google's Zanzibar design, capable of handling complex permission relationships at scale. Now you want to let developers try it out. How can you let them experiment freely without spinning up countless backend environments?
1ヶ月前
AuthQuake: Microsoft's MFA system vulnerable to TOTP brute force attack
WorkOS Blog
A critical vulnerability in Microsoft's multi-factor authentication (MFA) system has been discovered by Oasis Security's research team, allowing attackers to bypass time-based one-time passwords (TOTPs) through brute force methods.
1ヶ月前
What is multitenant authentication?
WorkOS Blog
Learn how to build and scale authentication systems that serve multiple enterprise customers. This guide explores key concepts in multitenant authentication, from managing organization-specific SSO and security policies to avoiding common pitfalls.
1ヶ月前
How to build SAML SSO with WorkOS, Entra ID, and Node
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add SSO to your app using SAML, Entra ID (Azure AD), Node, and WorkOS.
1ヶ月前
How to build Log in with GitHub using Go and WorkOS
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add Log in with GitHub to your app using Go and WorkOS.
1ヶ月前
How to build SAML SSO with WorkOS, Okta, and Node
WorkOS Blog
Step-by-step tutorial that walks you through the necessary steps to add SSO to your app using SAML, Okta, Node, and WorkOS.
1ヶ月前
The 5 best ABAC solutions for your SaaS in 2024
WorkOS Blog
Explore the top five ABAC solutions in 2024, including their features and who they’re best suited for.
1ヶ月前
The 10 best RBAC open-source solutions in 2024
WorkOS Blog
Learn about the best RBAC open-source solutions in 2024 and how they enhance user permission management.
2ヶ月前
SCIM best practices
WorkOS Blog
User provisioning is hard, and there are many things you can get wrong if you do it in-house. We gathered some best practices on SCIM to help you with that.
2ヶ月前
Seamless onboarding with the WorkOS Admin Portal
WorkOS Blog
An often overlooked but important component of identity management is customer onboarding.
2ヶ月前
November Updates
WorkOS Blog
Launch Week recap (FGA, Radar, Passkeys, Widgets, Actions, Entitlements, Next.js Starter Kit) and more
2ヶ月前
Stytch vs. Auth0 vs. WorkOS: which is best?
WorkOS Blog
Compare Stytch, Auth0, and WorkOS to learn what each does, its features, and which one you should use.
2ヶ月前
Frontegg vs. Auth0 vs. WorkOS: which is best in 2024?
WorkOS Blog
Frontegg vs. Auth0 vs. WorkOS: Learn their features, costs, and which is best for your needs.
2ヶ月前
Clerk vs. Auth0 vs. WorkOS: which should you choose?
WorkOS Blog
Compare Clerk vs. AuthO vs. WorkOS to know which one you should use to manage identities in your app.
2ヶ月前
FGA’s meaning: definition, benefits, and real-world examples
WorkOS Blog
Want to understand Fine-Grained Authorization’s (FGA) meaning? Read on to learn how it works, benefits, and real-world applications.
2ヶ月前
Clerk pricing: How it works and compares to WorkOS
WorkOS Blog
Explore how Clerk’s pricing stacks up against WorkOS. Understand the costs and features of each service to make an informed decision for your business.
2ヶ月前
Auth0 vs. Cognito vs. WorkOS: Which is best in 2024?
WorkOS Blog
Auth0 vs. Cognito vs. WorkOS — how do they compare, and which one should you use? Learn everything you need to know here.
2ヶ月前
Auth0 SSO: Is it worth the high cost?
WorkOS Blog
Learn what Auth0 offers, how much it costs, and why WorkOS is a better, more affordable alternative.
2ヶ月前
The 5 best user management software tools in 2024
WorkOS Blog
Discover the best user management software tools in 2024, their key features, and why you should consider them for your app.
2ヶ月前
RBAC vs. ACL: what's the difference and how do they work together?
WorkOS Blog
Compare RBAC vs. ACL, their differences, how they work together, and which to use.
2ヶ月前
4 WorkOS alternatives + which to choose
WorkOS Blog
Explore four top WorkOS alternatives: Auth0, Frontegg, Clerk, and Stytch. Compare their features, pricing, and what they are best suited for.
2ヶ月前
5 best Auth0 alternatives in 2024: head-to-head
WorkOS Blog
Explore the top Auth0 alternatives in 2024: WorkOS, Cognito, Firebase, KeyCloak, and Frontegg.
2ヶ月前
The 5 best Clerk alternatives in 2024
WorkOS Blog
Explore why businesses seek Clerk alternatives, featuring top options like WorkOS, Auth0, Okta, Firebase, and OneLogin.
2ヶ月前
The 5 best Frontegg alternatives in 2024
WorkOS Blog
Discover the top five Frontegg alternatives for 2024. Compare features, pricing, and best use cases to find the perfect fit for your needs.
2ヶ月前
The ultimate guide to user management in 2024
WorkOS Blog
Learn about user management, including why it’s important, the most important functions, key protocols, and more.
2ヶ月前
6 best user management services for 2024
WorkOS Blog
Explore the top user management services in 2024, including WorkOS, Okta, Zluri, and more.
2ヶ月前
SSO best practices
WorkOS Blog
SSO is necessary if you want to sell to enterprise customers, but doing it well is hard. We gathered some best practices that can help you with that.
2ヶ月前
Access management: What it is and how it works
WorkOS Blog
Learn what access management is, why it matters, how it works, and strategies to protect your business data effectively.
2ヶ月前
Why Google Zanzibar shines at building authorization
WorkOS Blog
Learn what makes Google Zanzibar the best authorization solution and how WorkOS FGA builds on top of these features.
2ヶ月前
Failed authentication events: use cases and how-to
WorkOS Blog
Learn about the failed authentication events you can get from WorkOS and how you can use them to implement features in your app.
2ヶ月前
How to build document access control with S3, WorkOS FGA, and Lambda authorizers
WorkOS Blog
In this tutorial, paired with companion code, you’ll learn to build a secure, scalable document access control system using WorkOS FGA, AWS Lambda Authorizers, and Amazon S3.
2ヶ月前
The complete guide to OAuth 2.0
WorkOS Blog
Learn everything you need to know about OAuth: what it is, what problem it solves, and how it works.
2ヶ月前
Common SAML security vulnerabilities and how to defend against them
WorkOS Blog
Review some of the common SAML security vulnerabilities and see how you can defend against them.
2ヶ月前
How to map role data from identity providers to roles in your app
WorkOS Blog
Learn how to map groups from external identity providers to user roles in your app using SSO or SCIM.
2ヶ月前
Entitlements sync between Stripe and your app
WorkOS Blog
WorkOS is introducing Entitlements powered by Stripe: one-button setup for enabling immediate, subscription-based access to plans, features, and products. Entitlements are available to all AuthKit customers for free.
2ヶ月前
Next.js B2B Starter Kit — fast-track your SaaS app from 0 to 1
WorkOS Blog
Every business starts with an idea, followed by the challenge of picking the right tech stack. In a crowded field where choosing the right technology is key yet time-consuming, starter kits help you focus on building your idea rather than reinventing the basics. That’s why we’re announcing the WorkOS-built Next.js B2B Starter Kit today.
2ヶ月前
Actions — customize AuthKit behavior in real-time
WorkOS Blog
We often think of auth as a binary decision—allowed or denied—but what if you want to factor in private knowledge or custom logic at runtime? Actions let you change how WorkOS behaves and customize user registration and authentication logic with AuthKit. Actions are also free to all AuthKit customers.
2ヶ月前
Widgets — ready-made components for complete enterprise features
WorkOS Blog
Widgets are ready-made components that provide complete enterprise features with a few lines of code. They are now available for free to all AuthKit customers.
2ヶ月前
Fine-Grained Authorization is now generally available
WorkOS Blog
FGA is the most flexible and granular authorization system, built for product and engineering teams looking to quickly implement fine-grained permissions in their applications. Use FGA to centralize your authorization logic, implement complex authorization schemes like Google Docs-style permissions, and define precise access control that goes beyond RBAC.
3ヶ月前
How to build browser-based OAuth into your CLI with WorkOS
WorkOS Blog
Ever wondered how tools like GitHub's CLI let you authenticate with a single gh auth login command? In this tutorial with companion code repo, we go through the implementation step by step.
3ヶ月前
Introducing Radar — real-time protection against bots, fraud, abuse
WorkOS Blog
Radar enhances AuthKit with powerful security features to protect your application from abuse, fraud, and attacks. It automatically detects authentication patterns that indicate malicious or suspicious behavior and includes six built-in preventions that can be enabled with a single click.
3ヶ月前
Passkeys, a safer and simpler alternative to passwords
WorkOS Blog
Passkeys allow you to log into your account using biometrics instead of a password. They are now available for free to all AuthKit customers.
3ヶ月前
Understanding cross-site scripting (XSS) attacks
WorkOS Blog
XSS attacks are not to be taken lightly. Learn what XSS is, the different types of attacks, and how you can defend against them.
3ヶ月前
SCIM challenges: navigating the idiosyncrasies of different providers
WorkOS Blog
Every provider does SCIM differently. If you don't pay attention, the results can be catastrophic. Read about these differences, the challenges that arise from them, and how WorkOS can help you overcome them.
3ヶ月前
How SAML certificate renewal works - and what happens when it fails
WorkOS Blog
Learn why it is important for SAML certificates to expire and how having a plan in place to handle expiration can avoid downtime.
3ヶ月前
Best practices for CLI authentication: a technical guide
WorkOS Blog
Learn how to securely authenticate users accessing your service through a command-line tool, enabling safe, scriptable workflows across terminals, machines, and Docker containers.
3ヶ月前
What is SCIM? The ultimate guide
WorkOS Blog
What is SCIM, and why do you need to support it in your SaaS? We’ll discuss the SCIM standard in-depth, how it works, and how you can add SCIM support to your app.
3ヶ月前
JWT validation: how-to and best libraries to use
WorkOS Blog
Learn about JSON Web Token (JWT) validation, why it’s important, what the best practices are, and how to do it using trusted third-party libraries.
3ヶ月前
How to add social logins in your app with WorkOS
WorkOS Blog
Learn what social logins are, how they work, and how you can integrate them into your app using WorkOS.
3ヶ月前
Top 5 Google Zanzibar open-source implementations in 2024
WorkOS Blog
Google Zanzibar is a globally distributed authorization system that manages permissions at scale. Learn how it works and which open source implementations are right for you.
3ヶ月前
ReBAC vs RBAC: What's the difference and which should you choose?
WorkOS Blog
RBAC associates permissions with roles, which are then assigned to users. ReBAC allows you to model complex relationships. Which is better for your use case?
3ヶ月前
What is user provisioning?
WorkOS Blog
User provisioning simplifies onboarding, tightens security, and automates user access management.
3ヶ月前
What is Universal Login and how does it work?
WorkOS Blog
Universal Login or Universal SSO streamlines user authentication to log employees into multiple apps quickly and securely. Learn how it works.
3ヶ月前
How SCIM deprovisioning works
WorkOS Blog
Learn what is user deprovisioning, how it works with SCIM, and how you can implement it with WorkOS.
3ヶ月前
What is an authentication token?
WorkOS Blog
Learn what authentication tokens are, the different types, and how you can generate and secure them.
3ヶ月前
What is the Okta Integration Network?
WorkOS Blog
What is the Okta App Store or Integration Network (OIN), and should you use it?
3ヶ月前
How to add SSO to your app with WorkOS
WorkOS Blog
Learn why Single Sign-On (SSO) is essential, which are the best practices to follow, and how to add SSO to your app using WorkOS.
3ヶ月前
How to secure RAG applications with Fine-Grained Authorization: tutorial with code
WorkOS Blog
With RAG and GenAI applications, how can you ensure users only see results from documents they have permission to access? In this runnable tutorial, we demo using WorkOS Fine-Grained Authorization to secure your documents.
3ヶ月前
OTP bots explained: What they are and how to stop them
WorkOS Blog
Learn how OTP bots work, their role in bypassing MFA, and the top methods to protect your accounts from these cyber threats.
3ヶ月前
Model your B2B SaaS with organizations
WorkOS Blog
A guide on how to model your SaaS using organizations and WorkOS.
3ヶ月前
What is the Azure AD or Entra ID app gallery and why should you care?
WorkOS Blog
The Microsoft Entra ID app gallery is a collection of thousands of apps pre-integrated with the Microsoft Identity stack. Learn how this gallery can help, and when it's not the right choice.
3ヶ月前
The easiest way to implement SAML in any app
WorkOS Blog
Implementing SAML on your own can be a challenge. In this article, we’ll show you an easier way of adding SAML support to any app using the WorkOS SSO API.
3ヶ月前
The Developer’s Guide to Fine-Grained Authorization
WorkOS Blog
As apps have become more complex, especially with the rise of user-generated content, the need for a more granular and scalable authorization scheme has become crucial. Unlike other models, Fine-Grained Authorization defines permissions at the resource level, providing precision and the ability to handle millions of authorization requests per second.
3ヶ月前
How SCIM provisioning works - tutorial with API calls
WorkOS Blog
SCIM is a widely used protocol, but not many people understand it. This straightforward and comprehensive guide steps through how it works, using real-world examples and API calls and responses.
3ヶ月前
Ruby SAML CVE-2024-45409: As bad as it gets and hiding in plain sight
WorkOS Blog
On September 10th, 2024, a critical security flaw was disclosed in the Ruby-SAML and OmniAuth-SAML libraries, exposing a vulnerability that allows complete authentication bypass. This flaw, CVE-2024-45409, earned the highest possible score of 10 on GitHub's CVE rubric and a 9.8 NIST base score, making it a "worst-case scenario".
3ヶ月前
Auth0 pricing: how it works and compares to WorkOS
WorkOS Blog
Explore the details of Auth0's pricing, its limitations, and what makes WorkOS a more transparent and scalable alternative.
3ヶ月前
X.509 certificates: what they are & how to get one
WorkOS Blog
Learn what X.509 certificates are and how to generate them with our comprehensive guide. Easy-to-follow steps included.
3ヶ月前
From RBAC to Fine-Grained Authorization part II: integrate with your app
WorkOS Blog
A technical guide on how you can migrate your RBAC implementation to Fine-Grained Authorization (FGA) using WorkOS. Learn how to check a user’s access to resources, manage your FGA implementation, and favor performance vs consistency on a per request basis.
4ヶ月前
From RBAC to Fine-Grained Authorization part I: design your model
WorkOS Blog
Migrate your RBAC implementation to Fine-Grained Authorization (FGA) using WorkOS. Learn what is FGA, how to define resources, relationships, and inheritance rules, and how to test and validate the access model.
4ヶ月前
What is Enterprise SSO and why does it matter?
WorkOS Blog
Learn what enterprise SSO is, why enterprises need it, how it works, and why you should support it in your SaaS.
4ヶ月前
What is OpenID Connect (OIDC)?
WorkOS Blog
Learn what OpenID Connect (OIDC) is, how it works, why you should use it, and how to implement it using WorkOS.
4ヶ月前
September Updates
WorkOS Blog
Enterprise Ready Conference, HIPAA compliance, frontend sessions, AuthKit branding customization
4ヶ月前
What is Single Logout and why is there such limited support for it?
WorkOS Blog
Learn what single logout is, its benefits, why it's important, and why it has such limited support.
4ヶ月前
The Developer’s Guide to Auth Sessions
WorkOS Blog
Learn what sessions are and how you can implement them from scratch or using an auth provider like WorkOS.
4ヶ月前
Session management for frontend apps with AuthKit
WorkOS Blog
AuthKit now supports sessions for public clients, like mobile and single-page apps. Use the WorkOS React SDK to keep your users logged in for longer while keeping them safe from attacks.
4ヶ月前
Secure authentication for frontend apps with PKCE
WorkOS Blog
Learn what PKCE is, why it's essential for securely authenticating users in mobile and single-page apps, and how you can keep your users safe by using AuthKit and WorkOS.
5ヶ月前