{
  "id": 13729927,
  "title": "How HN: Go-dev-auth zero-dependency authentication library for Go",
  "url": "https://urgent.news/2026/10/11/how-hn-go-dev-auth-zero-dependency-authentication-library-for-go",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-11T13:06:36.000Z",
  "source": {
    "name": "Hacker News",
    "slug": "hacker-news",
    "url": "https://github.com/go-dev-auth/go-dev-auth"
  },
  "original_language": "en",
  "account": "Go-dev-auth is a zero-dependency authentication library for the Go programming language. It covers a wide range of features such as email & password, social sign-on, sessions, account linking, two-factor authentication, passkeys, magic links, organizations, single sign-on (SSO), admin tooling, and API keys with JSON Web Tokens (JWT). The library is designed to be framework-agnostic, meaning it can be integrated with various HTTP frameworks like chi, echo, gorilla, or gin.\n\nZero external dependencies make Go-dev-auth a robust and portable option for developers looking to implement authentication in their Go applications. The library follows Semantic Versioning (SemVer) with pre-1.0 versions still allowing changes to the public API between minor releases. From v1.0 onwards, breaking changes require a major version bump.\n\nThe library has been successfully used in production on PostgreSQL, and it supports various storage backends including SQLite, PostgreSQL, and MySQL. It follows a comprehensive threat model and includes features such as rate limiting, IP resolution, trusted proxy handling, and CORS protection. Go-dev-auth also supports plugins, allowing developers to add custom functionality as needed.",
  "summary": null,
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}