# Better Auth vs Ory

**Leader by vioscaleAI score:** Ory

| Attribute | Better Auth | Ory |
|---|---|---|
| **vioscaleAI score** | 65 (39% (low)) | 76.4 (69% (medium)) |
| activity.commits_last_30d | 100 | 60 |
| adoption.dependent_repos | 210 | 9 |
| adoption.github_stars | 29,896 | 13,872 |
| adoption.package_downloads_weekly | 4,702,219 | - |
| content.faq | `[{"answer":"Better Auth is an open-source framework for building authentication directly into TypeScript applications using code-based configuration. It provides 50+ authentication methods and integrates with 20+ JavaScript frameworks, supporting features like social login, passkeys, multi-factor authentication, and enterprise capabilities such as SAML and SCIM. It is indexed under Auth & Identity Software.","source":"https://better-auth.com/pricing","question":"What is Better Auth?","confidence":0.6},{"answer":"Better Auth is open source, so it can be self-hosted and used at no licence cost. It is released under the MIT licence. A commercial or hosted edition starts at $20 per month. Prices are published openly on the vendor's own pricing page. Pricing changes often, so verify at source before relying on it.","source":"https://better-auth.com/pricing","question":"Is Better Auth free to use?","confidence":0.6},{"answer":"We have confirmed browser-based access to Better Auth. That is the extent of what we could verify from public sources, so it may well offer desktop or mobile clients we have not indexed.","source":"https://better-auth.com/pricing","question":"What platforms does Better Auth support?","confidence":0.6},{"answer":"Yes. Better Auth can be deployed cloud / SaaS and self-hosted, so it does not have to run on the vendor's infrastructure.","source":"https://better-auth.com/pricing","question":"Can Better Auth be self-hosted?","confidence":0.6},{"answer":"We have confirmed 21 integrations for Better Auth, including Next.js, Nuxt, SvelteKit, Astro, Hono, Google, GitHub and Apple, plus 13 more. This is what we could verify from public sources, so the vendor may support others we have not indexed.","source":"https://better-auth.com/pricing","question":"What does Better Auth integrate with?","confidence":0.6},{"answer":"Yes. Better Auth is published under the MIT licence, a permissive licence that generally allows commercial use and modification. Licence terms can change between releases, so verify against the repository for the version you intend to use.","source":"https://github.com/better-auth/better-auth","question":"Is Better Auth open source?","confidence":0.99},{"answer":"Better Auth is available worldwide. Its primary market is the United States.","source":"https://better-auth.com/pricing","question":"Where is Better Auth available?","confidence":0.5}]` | `[{"answer":"Flexible IAM platform offering modular authentication, authorization, and user management components. Supports multiple deployment modes—managed cloud services, self-hosted open-source, or on-premise enterprise—with built-in support for modern standards including OAuth 2.0, OpenID Connect, SAML, SCIM, and device-based authentication. It is indexed under Auth & Identity Software.","source":"https://www.ory.com/blog/mau-vs-adau-identity-pricing-compared","question":"What is Ory?","confidence":0.6},{"answer":"Ory is open source, so it can be self-hosted and used at no licence cost. It is released under the Apache-2.0 licence. A commercial or hosted edition starts at $0.14. Prices are published openly on the vendor's own pricing page. Pricing changes often, so verify at source before relying on it.","source":"https://www.ory.sh","question":"Is Ory free to use?","confidence":0.6},{"answer":"Ory supports the web and a command-line interface. Platforms we have not confirmed are simply not listed here rather than ruled out.","source":"https://www.ory.com/blog/mau-vs-adau-identity-pricing-compared","question":"What platforms does Ory support?","confidence":0.6},{"answer":"Yes. Ory can be deployed cloud / SaaS, on-premise, air-gapped and self-hosted, so it does not have to run on the vendor's infrastructure.","source":"https://www.ory.com/blog/mau-vs-adau-identity-pricing-compared","question":"Can Ory be self-hosted?","confidence":0.6},{"answer":"We have independently confirmed SOC 2, ISO 27001 and GDPR for Ory. Certifications we do not list are ones we have not been able to verify from public sources, which is not the same as Ory not holding them. Always confirm compliance directly before you rely on it.","source":"https://www.ory.sh/security","question":"What security certifications does Ory have?","confidence":0.7},{"answer":"Yes. Ory is published under the Apache-2.0 licence, a permissive licence that generally allows commercial use and modification. Licence terms can change between releases, so verify against the repository for the version you intend to use.","source":"https://github.com/ory/kratos","question":"Is Ory open source?","confidence":0.95}]` |
| deployment.options | `{"cloud":true,"self_hosted":true}` | `{"cloud":true,"hybrid":true,"on_prem":true,"air_gapped":true,"self_hosted":true}` |
| description.long | A TypeScript authentication system offering social login, multi-factor authentication, multi-tenancy, and enterprise features like SAML and SCIM. Includes a plugin ecosystem and supports both self-hosted and cloud-managed deployments. | An open-source and cloud-based identity platform offering authentication, authorization, and access control for applications and AI agents. Available as self-hosted open-source software, a managed cloud service, or an enterprise license with dedicated support. |
| features.capabilities | `{"mfa":true,"oidc":true,"rbac":true,"hosting":"both","saml_sso":true,"hosted_ui":"headless","open_source":true,"passwordless":true,"social_login":true,"b2b_multi_tenant":true,"passkeys_webauthn":true,"scim_provisioning":true}` | `{"mfa":true,"oidc":true,"rbac":true,"hosting":"both","saml_sso":true,"hosted_ui":"both","open_source":true,"passwordless":true,"social_login":true,"b2b_multi_tenant":true,"passkeys_webauthn":true,"scim_provisioning":true}` |
| integrations.count | 21 | 6 |
| integrations.list | `[{"name":"Next.js"},{"name":"Nuxt"},{"name":"SvelteKit"},{"name":"Astro"},{"name":"Hono"},{"name":"Google"},{"name":"GitHub"},{"name":"Apple"},{"name":"Discord"},{"name":"Passkey Authentication"},{"name":"Magic Link Authentication"},{"name":"Email OTP Authentication"},{"name":"Two Factor Authentication"},{"name":"Username Authentication"},{"name":"One Tap Authentication"},{"name":"Phone Number Authentication"},{"name":"Anonymous Authentication"},{"name":"Bearer Authentication"},{"name":"Generic OAuth"},{"name":"One Time Token Authentication"},{"name":"SIWE Authentication"},{"name":"Cloudflare","native":true,"category":"social"},{"name":"Microsoft Entra ID","native":true,"category":"social"},{"name":"Yandex","native":true,"category":"social"}]` | `[{"name":"Amazon SES"},{"name":"AWS API Gateway"},{"name":"Google","native":true,"category":"social","direction":"bidirectional"},{"name":"Kubernetes","native":true,"category":"infrastructure","direction":"bidirectional"},{"name":"Ambassador","native":false,"category":"infrastructure","direction":"bidirectional"},{"name":"Kong","native":false,"category":"infrastructure","direction":"bidirectional"},{"name":"Splunk","native":true,"category":"siem","direction":"outbound"},{"name":"Model Context Protocol (MCP)","native":true,"category":"ai","direction":"bidirectional"}]` |
| language.primary | TypeScript | Go |
| license.spdx | MIT | Apache-2.0 |
| market.availability | `{"primaryMarkets":["US"],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` | `{"primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` |
| platform.support | `{"web":true}` | `{"cli":true,"mac":true,"web":true,"linux":true,"windows":true}` |
| pricing | `{"type":"hybrid","plans":[{"free":true,"name":"Starter","summary":"Free","features":["User management","Audit log","Security detection","Abuse protection","Email templates","Community support"],"minSeats":1,"commitment":"monthly","components":[{"kind":"fixed","amount":0,"period":"month","currency":"USD"}],"description":"For evaluation and side projects","contactSales":false,"includedLimits":{"dashboard_seats":"1","audit_logs_per_month":"10,000","audit_log_retention_days":"1","security_detections_per_month":"1,000"}},{"free":false,"name":"Pro","summary":"$20/month base, plus per-usage overages","features":["Unlimited seats","User management","Audit log with overage","Security detection with overage","Transactional Email & SMS","Self-service SSO","Directory Sync","Dashboard RBAC","Email support","Slack support"],"commitment":"monthly","components":[{"kind":"fixed","amount":20,"period":"month","currency":"USD"}],"description":"For production teams running auth in the critical path","contactSales":false,"includedLimits":{"dashboard_seats":"Unlimited","audit_logs_per_month":"20,000","audit_log_retention_days":"7","security_detections_per_month":"10,000"}},{"free":false,"name":"Enterprise","summary":"Custom pricing","features":["Custom usage and retention","Custom domain for Dashboard","Log drain","Dashboard RBAC","Custom MSA and DPA","Slack support","Implementation assistance"],"description":"For organizations with bespoke security or volume needs","contactSales":true}],"addOns":[{"name":"Custom domain for Dashboard","components":[{"kind":"fixed","amount":25,"period":"month","currency":"USD"}]},{"name":"Log drain","components":[{"kind":"fixed","amount":25,"period":"month","currency":"USD"}]},{"name":"SSO connection (additional)","components":[{"kind":"fixed","amount":50,"period":"month","currency":"USD"}]},{"name":"Directory Sync connection (additional)","components":[{"kind":"fixed","amount":50,"period":"month","currency":"USD"}]}],"summary":"Free tier available. Pro from $20/month. Enterprise custom pricing.","currency":"USD","freeTier":true,"sourceUrl":"https://better-auth.com/pricing","retrievedAt":"2026-08-14T12:12:32.259Z","startingPrice":{"amount":20,"period":"month","currency":"USD"},"billingPeriods":["month"]}` | `{"type":"hybrid","plans":[{"free":true,"name":"Developer","summary":"Free tier for developers and proof of concept","contactSales":false},{"free":false,"name":"Production","summary":"$770/year plus $0.14/aDAU/month","features":["All top-tier security features","1 production environment and 3 staging environments","Permissions and machine-to-machine tokens"],"commitment":"annual","components":[{"kind":"fixed","amount":770,"period":"year","currency":"USD"},{"per":{"qty":1,"unit":"aDAU"},"kind":"metered","amount":0.14,"currency":"USD"}],"description":"Everything you need to thoroughly test and explore the landscape of identity security.","contactSales":false},{"free":false,"name":"Growth","summary":"$9,350/year","features":["Everything from Production","Advanced analytics and insights","2 production environments and 5 staging environments","B2B SSO (OIDC only)"],"commitment":"annual","components":[{"kind":"fixed","amount":9350,"period":"year","currency":"USD"}],"description":"Optimal for piloting traffic growth, getting insights into sign up and login conversions, and basic B2B features.","contactSales":false},{"free":false,"name":"Enterprise (SaaS)","summary":"Custom pricing","features":["Everything from Growth","Event firehose to data lake","Multi-region deployments with data residency","Volume pricing","Enterprise integrations for legacy systems","Multi-tenancy","Concierge onboarding","Premium support with SLAs","99.99% uptime SLA"],"description":"Managed SaaS for companies needing strict SLAs, premium support, or regulatory compliance.","contactSales":true},{"free":false,"name":"Enterprise License (Self-Hosted)","summary":"Custom pricing","features":["Full control of hosting","Multi-region deployment flexibility","Custom pricing","Premium enterprise integrations","Premium support with SLAs"],"description":"Self-hosted option for maximum control and in-house expertise.","contactSales":true}],"summary":"From $770/year. Free Developer tier. Usage-based (aDAU) metered pricing available.","currency":"USD","freeTier":true,"sourceUrl":"https://www.ory.sh","retrievedAt":"2026-08-05T14:11:20.676Z","startingPrice":{"amount":0.14,"period":"month","currency":"USD"},"billingPeriods":["month","year"]}` |
| pricing.free_tier | yes | yes |
| pricing.model | commercial | freemium |
| pricing.price_level | mid | low |
| pricing.transparent | yes | yes |
| release.cadence_days | 1 | 66 |
| release.history | `[{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.4","date":"2026-09-10T11:34:11Z","type":"stable","version":"v1.7.4"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.31","date":"2026-09-10T09:19:52Z","type":"stable","version":"v1.6.31"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.3","date":"2026-09-06T03:02:22Z","type":"stable","version":"v1.7.3"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.2","date":"2026-08-26T19:03:29Z","type":"stable","version":"v1.7.2"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.1","date":"2026-08-18T18:51:23Z","type":"stable","version":"v1.7.1"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0","date":"2026-08-18T00:23:22Z","type":"stable","version":"v1.7.0"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.30","date":"2026-08-17T19:09:38Z","type":"stable","version":"v1.6.30"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0-rc.6","date":"2026-08-14T18:19:37Z","type":"prerelease","version":"v1.7.0-rc.6"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.29","date":"2026-08-14T18:18:49Z","type":"stable","version":"v1.6.29"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.28","date":"2026-08-13T22:39:16Z","type":"stable","version":"v1.6.28"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0-rc.5","date":"2026-08-11T22:16:46Z","type":"prerelease","version":"v1.7.0-rc.5"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.27","date":"2026-08-11T17:59:52Z","type":"stable","version":"v1.6.27"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0-rc.4","date":"2026-08-05T00:26:40Z","type":"prerelease","version":"v1.7.0-rc.4"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.26","date":"2026-08-04T21:19:46Z","type":"stable","version":"v1.6.26"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0-rc.3","date":"2026-08-03T17:35:37Z","type":"prerelease","version":"v1.7.0-rc.3"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.25","date":"2026-07-23T15:50:49Z","type":"stable","version":"v1.6.25"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0-rc.2","date":"2026-07-22T19:58:53Z","type":"prerelease","version":"v1.7.0-rc.2"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.24","date":"2026-07-22T10:35:43Z","type":"stable","version":"v1.6.24"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.7.0-rc.1","date":"2026-07-02T17:39:16Z","type":"prerelease","version":"v1.7.0-rc.1"},{"url":"https://github.com/better-auth/better-auth/releases/tag/v1.6.23","date":"2026-06-29T22:08:12Z","type":"stable","version":"v1.6.23"}]` | `[{"url":"https://github.com/ory/kratos/releases/tag/v26.2.0","date":"2026-03-20T14:10:32Z","type":"stable","version":"v26.2.0"},{"url":"https://github.com/ory/kratos/releases/tag/v25.4.0","date":"2025-11-07T15:48:50Z","type":"stable","version":"v25.4.0"},{"url":"https://github.com/ory/kratos/releases/tag/v1.3.1","date":"2024-10-28T10:21:42Z","type":"stable","version":"v1.3.1"},{"url":"https://github.com/ory/kratos/releases/tag/v1.3.0","date":"2024-09-26T10:33:37Z","type":"stable","version":"v1.3.0"},{"url":"https://github.com/ory/kratos/releases/tag/v1.2.0","date":"2024-06-05T11:02:56Z","type":"stable","version":"v1.2.0"},{"url":"https://github.com/ory/kratos/releases/tag/v1.1.0","date":"2024-02-20T12:26:07Z","type":"stable","version":"v1.1.0"},{"url":"https://github.com/ory/kratos/releases/tag/v1.0.0","date":"2023-07-12T20:24:48Z","type":"stable","version":"v1.0.0"},{"url":"https://github.com/ory/kratos/releases/tag/v0.13.0","date":"2023-04-18T17:07:18Z","type":"stable","version":"v0.13.0"},{"url":"https://github.com/ory/kratos/releases/tag/v0.11.1","date":"2023-01-14T11:40:30Z","type":"stable","version":"v0.11.1"},{"url":"https://github.com/ory/kratos/releases/tag/v0.11.0","date":"2022-12-02T18:41:38Z","type":"stable","version":"v0.11.0"},{"url":"https://github.com/ory/kratos/releases/tag/v0.10.1","date":"2022-06-01T11:15:28Z","type":"stable","version":"v0.10.1"},{"url":"https://github.com/ory/kratos/releases/tag/v0.10.0","date":"2022-05-30T13:09:17Z","type":"stable","version":"v0.10.0"},{"url":"https://github.com/ory/kratos/releases/tag/v0.9.0-alpha.3","date":"2022-03-25T10:02:51Z","type":"prerelease","version":"v0.9.0-alpha.3"},{"url":"https://github.com/ory/kratos/releases/tag/v0.9.0-alpha.2","date":"2022-03-22T10:20:26Z","type":"prerelease","version":"v0.9.0-alpha.2"},{"url":"https://github.com/ory/kratos/releases/tag/v0.9.0-alpha.1","date":"2022-03-21T22:20:48Z","type":"prerelease","version":"v0.9.0-alpha.1"},{"url":"https://github.com/ory/kratos/releases/tag/v0.8.2-alpha.1","date":"2021-12-17T15:04:04Z","type":"prerelease","version":"v0.8.2-alpha.1"},{"url":"https://github.com/ory/kratos/releases/tag/v0.8.1-alpha.1","date":"2021-12-13T18:59:53Z","type":"prerelease","version":"v0.8.1-alpha.1"},{"url":"https://github.com/ory/kratos/releases/tag/v0.8.0-alpha.3","date":"2021-10-28T22:56:46Z","type":"prerelease","version":"v0.8.0-alpha.3"},{"url":"https://github.com/ory/kratos/releases/tag/v0.8.0-alpha.2","date":"2021-10-28T10:03:55Z","type":"prerelease","version":"v0.8.0-alpha.2"},{"url":"https://github.com/ory/kratos/releases/tag/v0.8.0-alpha.1","date":"2021-10-28T08:23:21Z","type":"prerelease","version":"v0.8.0-alpha.1"}]` |
| reliability.sla_pct | - | 99.99 |
| reliability.status_page | - | yes |
| security.disclosure_policy | - | yes |
| security.gdpr | - | yes |
| security.hipaa | - | yes |
| security.iso27001 | - | yes |
| security.pci | - | yes |
| security.scorecard | - | 6.7 |
| security.soc2 | - | yes |
| security.trust_center | https://better-auth.com/blog/security-update-june-2026 | https://www.ory.com/blog/meeting-the-worlds-standards-ory-and-global-compliance-readiness |
| security.vulnerabilities | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=npm&package_name=auth&per_page=100","last_12m":0,"max_severity":null}` | `{"count":2,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fory%2Fkratos&per_page=100","last_12m":1,"max_severity":"HIGH"}` |

## Capabilities (Auth & Identity Software)

| Capability | Better Auth | Ory |
|---|:--:|:--:|
| **Deployment** |  |  |
| Hosting | Cloud + self-hosted | Cloud + self-hosted |
| **Methods** |  |  |
| Social login | ✓ | ✓ |
| Passwordless | ✓ | ✓ |
| Passkeys / WebAuthn | ✓ | ✓ |
| Multi-factor auth | ✓ | ✓ |
| **Enterprise** |  |  |
| SAML SSO | ✓ | ✓ |
| SCIM provisioning | ✓ | ✓ |
| B2B / multi-tenancy | ✓ | ✓ |
| **Standards** |  |  |
| OpenID Connect provider | ✓ | ✓ |
| **Delivery** |  |  |
| Hosted UI | Headless | Both |
| **Access** |  |  |
| RBAC | ✓ | ✓ |
| **Licensing** |  |  |
| Self-hostable OSS core | ✓ | ✓ |

*Source: vioscaleAI. Generated 2026-09-21T03:46:17.082Z. "-" = undocumented, not absent.*
