{"repo":"maltzsama/dagster-authkit","free":true,"listed":false,"github":"https://github.com/maltzsama/dagster-authkit","clone":"git clone https://github.com/maltzsama/dagster-authkit.git","description":"Community Auth System for self-hosted Dagster OSS - simple RBAC, Audit-log, and Session Management","language":"Python","stars":63,"topics":["authelia","authentication","authentication-middleware","dagster","dagster-project","data-pipeline","orquestration","pipeline","rbac","dagster-auth"],"license":"Apache-2.0","category":"data-pipelines","readme_excerpt":"🛡️ Dagster AuthKit Community authentication wrapper for self-hosted Dagster OSS. Authentication, RBAC, and Audit logs for Dagster without touching internal code. --- 🎯 What is this? Dagster OSS has no auth. If you run it in a VPC or locally, anyone with the URL has full admin access. AuthKit solves this by wrapping the dagster-webserver command to add: ✅ Login Interface: Simple username/password flow. ✅ RBAC (4 Levels): Granular control over who can do what. ✅ Audit Logs: JSON logs for monitoring who is doing what. ✅ Multi-Backend: Works with SQLite, Postgres, MySQL (via Peewee ORM) and Redis. No code changes required. You don't touch your repository.py or dagster.yaml . --- ✨ What's New in v1.0.0 ☸️ Helm Chart - Production-ready Kubernetes chart under helm/dagster-authkit/ , synced with the application's config (env vars, secrets, image tag) and versioned automatically by semantic-release. Requires an explicit image.tag . 🔄 Automated CHANGELOG - CHANGELOG.md is now auto-generated by semantic-release on each release, alongside the version bump. Versions are inserted above the marker. - RBAC deny-by-default — unknown GraphQL mutations require ADMIN by default. 🔐 Hardening & Fixes - Rebuild of the fix backlog from v0.4.2 across CSRF (per-client double-submit), fail-closed GraphQL batches, token-gated /auth/metrics , Redis 6-compatible atomic rate limiting, LDAP connection cleanup, session revoked-token caps, and detection-layer Starlette Middleware.cls compatibility. - Test","default_branch":null,"files":null,"tree":[],"storefront":"/r/maltzsama","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/maltzsama/dagster-authkit/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}