{"repo":"aserto-dev/topaz","free":true,"listed":false,"github":"https://github.com/aserto-dev/topaz","clone":"git clone https://github.com/aserto-dev/topaz.git","description":"Cloud-native authorization for modern applications and APIs","language":"Go","stars":1358,"topics":["access-control","authorization","cloud-native","abac","api","rbac","rebac","zanzibar","opa","golang"],"license":"Apache-2.0","category":"auth-billing-email","readme_excerpt":"Topaz - cloud-native authorization for modern applications and APIs Topaz is an open-source authorization service providing fine-grained, real-time, policy-based access control for applications and APIs. It uses the Open Policy Agent (OPA) as its decision engine, and provides a built-in directory that is inspired by the Google Zanzibar data model. Authorization policies can leverage user attributes, group membership, application resources, and relationships between them. All data used for authorization is modeled and stored locally in an embedded database, so authorization decisions can be evaluated quickly and efficiently. Documentation and support Read more at topaz.sh and the docs. Join the community Slack channel for questions and help! Benefits Authorization in one place : a single authorization service, instead of spreading authorization logic everywhere. Fine-grained : following the Principle of Least Privilege, assign the smallest set of fine-grained permissions to each user or group. Policy-based : convert authorization \"spaghetti code\" into a policy expressed in its own domain-specific language, managed as code, and built into an immutable, signed artifact. Real-time : gate each protected resource with an authorization call that ensures the user has the right permission. Blazing fast : deploy the authorizer as a sidecar or microservice, right next to your app, for low latency and high availability. Comprehensive decision logging : log every decision to facilitate au","default_branch":null,"files":null,"tree":[],"storefront":"/r/aserto-dev","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aserto-dev/topaz/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}