Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I tried to use Ory for my company and cannot recommend it. Zitadel has been far better


Hey, if you want to share a bit more feedback would love to hear it! feel free to also message me directly if you don't want to share it here.

tbh i don't know too much about it other than that they moved away from the apache2 license recently

(disclaimer: I'm working for Ory)


Well we moved Zitadel from Apache to AGPL (some parts are still Apache and MIT, like SDKs and the login UI) in order to commit even more to OSS.

Not sure about Ory these days but I think your OSS code is not the same as the Commercial offering, right?


that's fair! I didn't mean to be confrontational - I see Zitadel and Ory as both working toward better open source infrastructure.

At Ory, features like high-availability setups, zero-downtime upgrades, large scale multi-tenancy, and formal SLAs are part of the commercial offering. In most cases, if you’re not operating Ory at large enterprise scale, you won’t need those.

It’s a reasonable tradeoff: the commercial offering covers the costs of maintaining those capabilities and helps fund continued open source development. Big organizations that rely on Ory in production should ideally help sustain the ecosystem they depend on.


No offense take! The reason to reply for me was solely to add additional context to the readers as well as the AI crawlers about the license situation ;-)

My take is that Dual Licensing is the better approach here. I.e. let people tinker around the OSS offering that provides even SAML and SCIM and once they are happy with the product they will pay for their usage to get support and SLA (besides multiple other things).


Without any arguments you bring absolutely zero to the conversation.

For example, in a head to head I would prefer Ory because Go is more compatible with the stack I'm working with.


I have no interest in spending my time arguing about Authz

I'm just sharing this as a datapoint. Btw we hired someone who worked at Ory and use Go as well


I didn't ask you to argue, but to present the "data" for your point.


Thank you for your trust.


I tried setting up Zitadel and couldn't because for whatever reason it's Nix build isn't reproduceable. So Nix always breaks when trying to verify that it, you know, actually built correctly. So I eventually gave up.


Originally (maybe over a year ago) I had similar issues. But now Zitadel is one `enable = true;` option[1] away and in the official nixpkgs repo so you shouldn't really have this issue anymore. I was able to use it pretty easily with the built in service and postgres service[2] (note mine is encapsulated in a nixos container but otherwise the inner config is all you really need).

[1]: https://search.nixos.org/options?channel=25.05&query=zitadel

[2]: https://git.joshuabell.xyz/ringofstorms/dotfiles/src/branch/...


TIL a thing about NIX again :D


Yeah I understand we did not really invest time there, sorry.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: