openfga/openfga
A high performance and flexible authorization/permission engine built for developers and inspired by Google Zanzibar
About the project
OpenFGA is an authorization/permission engine inspired by Google Zanzibar for fine-grained access control. It lets you model permissions as relationship tuples and check them via HTTP/gRPC APIs.
Useful for
- Run OpenFGA in Docker with in-memory storage to test an access model locally
- Model and test authorization rules in the Playground at localhost:3000
- Configure PostgreSQL as storage and deploy the authorization server in production
README summarized by DeepSeek V4.1 Flash. Details may be inaccurate.
Why it’s trending
- 3 stars so far today, about 9 expected by the end of the day.
- Over the last two days the pace is 2.3× that of the previous week and a half.
- GitHub Trending Go today: #11, +19 stars.
- Recent forks include notable developers: @mbrukman (388 followers).
Stars per day
Bars are daily stars, the line is the usual pace. Red marks spike days.
Numbers
- Total stars
- 5,849
- Today
- 3 · ≈ 9 by evening
- Forks
- 504
- Issues and pull requests
- 3,261
- Watchers
- 38
- Language
- Go
- License
- Apache-2.0
- Latest release
- v1.21.0 · September 20, 2026
- Created
- June 8, 2022
- Last push
- September 24, 2026
Star trust
Growth looks organic: forks and discussion are in line with active projects, and stars arrive unevenly, the way people give them.
These are heuristics, not a verdict: we judge by the repository’s behavior, not by a list of stargazers.
Spotted in
- September 24, 2026GitHub Trending Go today: #11, +19 stars
More in this category
-
5.9
mvt-project/mvt
A collection of mobile forensics utilities that gather and analyze traces of compromise on Android and iOS devices, matching them against public indicators of compromise (IOCs). Built by Amnesty International Security…
-
5.5
newliver666/apk-reverse
An Agent Skill for Android APK reverse engineering: unpacking, ad removal, dex patching, repacking, and runtime/server analysis. Loaded by an agent (Claude Code, Codex) while it works.
-
4.0
cloudflare/security-audit-skill
A coding-agent skill that turns the agent into a security auditor, running a multi-phase code audit with independently verified, machine-readable findings.
-
3.2
yastorovsky/MehrON
Windows proxy client based on v2rayN with system proxy, TUN mode and multi-core support (Xray, sing-box, mihomo, Aether), including SNI spoofing and MHR relay for DPI bypass and use during internet shutdowns.
-
3.1
YuJunZhiXue/dsh-purge
A local DeepSeek Harness plugin that reversibly patches installed @deepseek-ai packages to strip built-in refusals and swap prompts per model. Intended for red-team research and robustness evaluation in an authorized…
-
2.9
mukul975/Anthropic-Cybersecurity-Skills
A library of 818 structured cybersecurity skills for AI agents, mapped to six frameworks (MITRE ATT&CK, NIST CSF 2.0, ATLAS, D3FEND, NIST AI RMF, MITRE F3) and compatible with Claude Code, Copilot, Cursor and other…