Authentication inside your app.
Stargate embeds OIDC sign-in, sessions, API keys and an account panel in your existing HTTP server. The authentication runtime is written in Rust and shared across language integrations.
Choose your integration
Install the package for your host language:
Node / Express
npm install @syntropika/stargate expressPython / FastAPI
python -m pip install syntropika-stargate fastapiRust / Axum
cargo add syntropika-stargate --rename stargateGo integration is available from the repository and links to the Rust C ABI. See the Go integration guide.
Mount the runtime
Provide the public HTTPS origin, embedded Turso database and your OIDC provider configuration. Register https://app.example.com/auth/callback with the provider, mount Stargate, then protect the routes that require an identity or scopes.
The account panel is served under /auth/. Your application supplies the HTTP server, TLS and configuration; Stargate does not discover configuration files or environment variables.
Read the integration examples →
Understand the current scope
Stargate currently targets one process, one embedded database and an external OIDC identity provider. Password sign-up, administrator management, MFA and distributed sessions are future work.
Read configuration and security before shipping an integration. All cookies use Secure, and browser account mutations require session authentication and CSRF protection.