---
title: "Build identity at the edge, without giving up control"
description: "Vonvon brings Hosted Auth, OIDC, organizations, enterprise federation, directory sync, and SDKs into one MIT-licensed platform running on Cloudflare Workers."
locale: "en"
image: "https://vonvon.id/og.png"
---

> Documentation Index
> Fetch the relevant documentation index at: https://vonvon.id/en/llms.txt
> Use this file to discover all available pages before exploring further.

# Build identity at the edge, without giving up control

Vonvon brings Hosted Auth, OIDC, organizations, enterprise federation, directory sync, and SDKs into one MIT-licensed platform running on Cloudflare Workers.

## Three focused Workers. One identity platform.

Public content and management stay binding-free. Identity state, protocols, and policy remain in Core.

- **Site:** Product, documentation, search, and agent-readable content
- **Console:** Organization and instance management UI
- **Core:** Hosted Auth, protocols, APIs, data, and asynchronous work

## One control plane from sign-in to enterprise access

Use the complete platform or adopt the protocol, UI, and SDK layers that fit your architecture.

### Authentication and account

Hosted sign-in, passkeys, password, MFA, session management, consent, and account self-service share one tenant-aware Core.

### Organizations and access

Model organizations, OrgUnits, projects, roles, grants, approval policies, and access requests without creating a separate admin tenant.

### Federation and provisioning

Connect inbound SAML and OIDC, downstream SaaS SSO, SCIM, directory sync, and domain discovery behind explicit policy boundaries.

### Protocols and developer experience

Ship OIDC and OAuth flows, Management APIs, webhooks, framework SDKs, localized docs, and networkless token verification from one repository.

## Production where proven, local where not

First-party Hosted Auth, Console, and Management API paths have production evidence on vonvon.id. Enterprise IdP, downstream SaaS, social OAuth, and SMS or WhatsApp claims stay non-production-supported until a real L4 row exists for that path.

## Open source, inspectable, and self-hostable

The MIT-licensed repository includes the complete feature set. Security posture and project governance remain visible through OpenSSF and the public source.

Source: https://vonvon.id/index.mdx
