Auth, billing, and payments
A self-hosted multi-tenant platform for small teams. Customize it with AI and skip the infrastructure.
Everything except your core product
Auth, billing, payments, user management — the stuff every SaaS needs but nobody wants to build. It's all here, AI-customizable, ready to deploy.
Multi-Tenant Auth
Organize users into isolated Realms with full data separation. Each Realm gets its own users, roles, OAuth providers, and Client Apps.
- Realm-based tenant isolation
- OAuth 2.0 provider (Google, GitHub, WeChat)
- TOTP two-factor authentication
RBAC & Client Apps
Fine-grained role-based access control per Realm. Register Client Apps with OAuth 2.0 credentials and control which apps access which resources.
- Role-based permissions per Realm
- Client App registration & secrets
- Third-party API integration
Billing & Payments
Create subscription plans, map them to payment providers, and assign plans to Client Apps. Includes points/credits and invoice management.
- Subscription plans & pricing tiers
- Stripe & Creem integration
- Points & credits system
From zero to production in three steps
Deploy the platform. Let AI customize it. Ship your product.
Deploy with Docker
Clone the repo, point your domain, and run dev-start.py. PostgreSQL, Redis, Caddy (with auto-TLS), and the Herald app start together on one machine.
Customize with AI
Create Realms, set up OAuth providers (Google, GitHub, WeChat), configure RBAC roles. Use AI-assisted tools to tailor the platform without hand-writing infrastructure code.
Connect Your Apps
Your applications authenticate users through Herald's OAuth 2.0 endpoints. Users sign in with email/password or social logins. Herald handles sessions, tokens, and user management.
Why small teams choose Herald
Auth, billing, and payments in one self-hosted system. AI helps you customize. No stitching services together.
| Herald | Auth0 | Supabase | Keycloak | |
|---|---|---|---|---|
| Multi-tenant auth | Included | Enterprise only | Manual setup | Included |
| Subscription billing | Built-in | — | — | — |
| Points & credits | Built-in | — | — | — |
| Self-hosted | Yes | Cloud only | Yes | Yes |
| Open source | Apache-2.0 | No | Partial | Apache-2.0 |
Frequently asked questions
Everything you need to know about Herald.
What is Herald?
How is Herald different from Auth0 or Keycloak?
What does multi-tenant mean in Herald?
How do I deploy Herald?
What payment providers does Herald support?
What tech stack does Herald use?
Is Herald free and open source?
Stop building infrastructure. Start shipping product.
Herald gives you auth, billing, payments, and user management out of the box. AI handles customization. You focus on what makes your software unique.