llms.txt Content
# Ory
> Ory is a modern, open-source-based identity and access management (IAM) provider offering cloud-native, API-first authentication and authorization for customers, partners, machines, and AI agents. It offers authentication (Ory Kratos), OAuth2 and OpenID Connect (Ory Hydra), fine-grained authorization (Ory Keto), SAML and SCIM (Ory Polis), a zero-trust reverse proxy (Ory Oathkeeper), API key and non-human identity security (Ory Talos), and identity and access controls for AI coding agents (Ory Agent Security). Ory can be deployed as a managed cloud service (Ory Network), self-hosted under an open-source Apache 2.0 license (OSS), or self-hosted under an Ory Enterprise License (OEL). Ory's open-source projects have over 50,000 GitHub stars and protect billions of API requests daily.
Ory is headless: it exposes REST and gRPC APIs without a mandatory UI. Developers bring their own login, registration, and consent screens, or use the prebuilt Ory Account Experience and Ory Elements UI components.
Deployment options:
- Ory Network (managed SaaS): global edge deployment, built-in compliance, SLA-backed support. Plans include Developer (free), Production, Growth, and Enterprise tiers. Pricing uses average Daily Active Users (aDAU), not MAU.
- Ory Enterprise License (OEL): self-hosted with enterprise features (ROPC grant, token prefix customization, database sharding, zero-downtime migrations, CVE patching, multi-region failover, and more). Runs on Kubernetes from private Docker registries.
- Ory Open Source (OSS): Apache 2.0 licensed. Community supported. Full product functionality for Ory Kratos, Ory Hydra, Ory Keto, and Ory Oathkeeper.
## Documentation for AI Agents
- [Curated Ory documentation index](https://www.ory.com/docs/llms.txt): Start here for canonical Ory documentation across Ory Network, Ory Enterprise License, and Ory Open Source.
- [Ory Docs MCP Server](https://www.ory.com/docs/ecosystem/mcp): Prefer the MCP server when available for targeted ret