Identity & access for your apps

One login for every app you build.

KPass is a single sign-on and permissions service: redirect your users to KPass once, and every app you build can trust who they are and what they're allowed to do — without you building login screens or an access-control system from scratch.

How it works

STEP 1
Send the user to KPass
Redirect their browser to KPass with your app's client ID. KPass handles the login form — your app never sees a password.
STEP 2
KPass checks who they are
KPass authenticates the user (and runs MFA if you've turned it on), then sends them back to your app with a one-time code.
STEP 3
You get their identity back
Exchange that code from your backend for the user's identity and role — then decide what they're allowed to see and do.
What you get

Everything an app needs for sign-in and access control.

AUTHENTICATION

Single sign-on

One login for every app your organisation runs, instead of a separate password for each one.

ACCESS CONTROL

Groups & permissions

Model your organisation with roles, groups, and dot-namespaced permissions, with per-user and per-group overrides when you need an exception.

FOR DEVELOPERS

A real API

Manage users, groups, apps, and permissions from your own code — not just the admin console.

ISOLATED BY DESIGN

Organisations

Every KPass account is its own organisation — apps, users, and groups all stay inside it. Running more than one? Buy a separate license per organisation from the Klivolks Console.

VISIBILITY

Login activity

See successful and failed logins as they happen, with device, browser, and location detail for every attempt.

ADMIN CONSOLE

One place to manage it all

Users, apps, API clients, groups, and permissions — all in a single admin console, no extra tooling needed.

Pricing

Pick how you want to run KPass.

Loading pricing…

Ready to add sign-in to your app?

Create your organisation in the Klivolks Console and get your first API client in minutes.

Get started