Auris BY ALTOVAR
Scroll to explore

Every identity.Connected.Every control.

Identity, access & compliance

Connect people, applications and organizations with Auris. Manage identity and access, then organize controls, evidence and audit reviews with Comply.

OpenID Connect
OAuth 2.0
SAML 2.0
WebAuthn
SCIM 2.0
REST API

YOUR PEOPLEYOUR APPS
ONE IDENTITY LAYER

Less identity plumbing.More product building.

Explore the platform
// 001

A better way in.

Hosted login, social providers, magic links and passkeys. Give people a familiar way to access your product.

AUTHENTICATION, CONNECTED
// 002

Access with context.

Bring roles, permissions and relationship-based authorization into the same conversation. Define who can do what.

THE RIGHT ACCESS
// 003

Ready for organizations.

Work with teams, invitations, enterprise SSO and user provisioning. Give every organization its own space.

B2B, BUILT IN

Your stack.Already speaking Auris.

Build on the protocols your applications already understand. Connect identity without making your entire stack speak a new language.

OIDC Application sign-in
SAML Enterprise federation
SCIM User provisioning
FGA Fine-grained access
PEOPLE & SERVICES
Auris YOUR IDENTITY LAYER
APPLICATIONS

One identity layer. Across your applications.

Three connected layers.One identity system.

Illustrative identity flow
SIGN-IN METHODS
Passkeys
Social login
Magic links
Enterprise SSO
Auris
VERIFIED CONTEXT
User identity
Organization
Session
IDENTITY VERIFIED

Fits your workflow.

Use your existing applications, frameworks and identity providers.

Your brand at the door.

Customize your hosted login and connect a custom domain.

Room for your teams.

Organize users, memberships and access across tenants.

From first sign-in.To every next step.

Read the docs
// 001

Register an application and configure its callback URLs and identity settings.

Connect your app.

// 002

Enable the authentication methods that fit your users and organization.

Choose the way in.

// 003

Map roles and permissions to the resources your application exposes.

Define access.

// 004

Manage users, inspect audit events and connect lifecycle webhooks.

Keep it connected.

Your application.With identity included.

Start with an SDK, connect through open protocols, and keep your application logic where it belongs.

Read the docs
JavaScriptReactNext.jsPHPCLIMCP
middleware.ts
import { aurisMiddleware } from '@auris/nextjs/middleware'

export default aurisMiddleware({
  domain: process.env.AURIS_DOMAIN!,
  clientId: process.env.AURIS_CLIENT_ID!,
  protectedPaths: ['/dashboard/*'],
  loginUrl: '/login',
})

Route protection configuration. Complete the application and callback setup in the documentation.

Auris Comply

The control.The evidence behind it.

Bring controls, evidence and reviews into one workspace. Give your team the context to prepare audits and follow the work through.

Explore the workspace
Scope & applicabilityOwners & maturityFiles & linksVersions & validityReviews & findingsCorrective actions
Illustrative compliance workflow

Define the responsibility

Scope & applicability
Owners & maturity

Set applicability and ownership for each control in your adopted frameworks.

Everything connected.Clearly documented.

From your first application to organizations and access policies. Find the details to build your integration.

Read the docs

Different products.A shared foundation.

[01]

For product teams.

Give your users a consistent sign-in experience across the applications you build.

APPS / EXPERIENCES
[02]

For B2B platforms.

Connect business customers with organization spaces, enterprise SSO and provisioning.

TEAMS / ORGANIZATIONS
[03]

For infrastructure teams.

Bring identity policies, lifecycle events and application access into your operational stack.

CONTROL / OPERATIONS

Your identity.Managed by Altovar.

Auris runs as a managed service operated by Altovar. You focus on your product; we run the identity platform, from setup to operations.

A few things.Before you get started.

What does Auris manage?

Auris brings authentication, authorization and organization management together. It connects application sign-in, users, roles, permissions and B2B identity workflows.

Can I connect my existing applications?

Yes. Auris documents OpenID Connect, OAuth 2.0 and SAML integrations, alongside SDKs for JavaScript, React, Next.js and PHP. The right integration depends on your application.

Does Auris support passwordless access?

Auris supports magic links and WebAuthn passkeys. You choose which authentication methods to enable for your users.

How do organizations and enterprise SSO work?

Organization features cover memberships and invitations. SAML and OIDC enterprise connections support federated sign-in, while SCIM connects user provisioning.

What does Auris Comply manage?

Auris Comply connects frameworks, controls, evidence, risks, policies and audits. Its workspace also includes suppliers, training, continuity, privacy and reporting modules.

How does evidence connect to controls?

You can attach files or links, associate evidence with controls, keep versions and validity dates, and submit evidence for review. Review decisions and notes stay with the record.

Can we coordinate audit work?

Comply supports audit programs, teams, checklists and control reviews. You can record findings and manage corrective actions as your team works through the review.

Does Comply grant certification?

No. Comply helps your team organize records and prepare reviews. It does not grant certification or guarantee compliance; assessment and certification remain the responsibility of the relevant professionals and bodies.

MAKE IDENTITY PART OF YOUR PRODUCT

People, connected.Access, under control.