compare
Authelia vs Casdoor
The same facts for both, read from GitHub every night, and the relation a person reviewed.
| Fact | Authelia | Casdoor |
|---|---|---|
| Language | Go | Go |
| Licence | Apache-2.0 | Apache-2.0 |
| Stars | 29k | 15k |
| Latest | v4.39.28 | v4.17.0 |
| Last push | 2026-10-06 | 2026-10-06 |
| Release cadence | about 2 days between releases | about 2 days between releases |
| Active contributors | 13+ commit authors on the default branch in the last 90 days | 17 commit authors on the default branch in the last 90 days |
| Flags | none | none |
How they relate
Both replace Okta. Alternatives to Okta →
PartialAutheliaSSO and MFA in front of a reverse proxy, plus an OpenID Connect provider, without user management UI.
PartialCasdoorSingle sign-on and MFA for your apps; no workforce lifecycle management.
Authelia
- v4.39.282026-09-17docker pull authelia/authelia:4.39.28
- v4.39.272026-09-15handlers: use correct status code for consent redirects (#13155) (b1d294e) by @james-d-elliott
- v4.39.262026-09-12oidc: allow conformant alg none jarm (#13110) (2ce5b5b) by @james-d-elliott
- v4.39.252026-09-10notification: smtp ipv6 literal addresses (#13051) (ffa6a89), closes #13041 by @james-d-elliott
- v4.39.242026-09-09suites: preserve log colours under go test -json (#13048) (c004538) by @nightah
Casdoor
- v4.17.02026-10-06817334ed69d92e8bcb3c7b24589f1f3b6f5272b9 feat: add a README to the Helm chart
- v4.16.02026-10-06b45f7bcbbc78073adfe7022f24a50880e8400302 feat: add .well-known metadata file
- v4.15.02026-10-040feded28b8aa13a03ff722f70bf7890415b1d1e7 fix: handle missing organization and user in remove-user-from-group API
- v4.14.02026-10-03b94dce99fa1d9fd21de82e1c93b50640f9d3968f feat: open account menu on hover
- v4.13.02026-09-30c9adca039f3c24b570567e0def8d1018e9194c9f feat: add Audit provider to forward audit logs to Syslog
Authelia
✓ signed The latest release, v4.39.28, carries a signature GitHub verified.
Loading the security report
Casdoor
unsigned The latest release, v4.17.0, carries no signature GitHub could verify.
Loading the security report