What is Flowsta?
Build for the
New Internet.
Flowsta is decentralized authentication for a world where users own their identity. When you integrate Flowsta, you're not just adding a login button — you're building for a freer internet.
The Problem with "Login with Google"
Traditional SSO providers give you convenience at a cost that most developers don't think about until it's too late.
You hand over your users
Every "Login with Google" sends your users' data to a company that mines it for profit. Your users trust you, not your auth provider.
You depend on their terms
Platforms change APIs, revoke access, or shut down overnight. Your login flow is only as stable as their business decisions.
Users are losing trust
People are tired of being tracked. A growing number of users actively avoid apps that require corporate SSO logins.
It Doesn't Have to Be This Way.
Flowsta is built on Holochain — a peer-to-peer framework where there is no central server to hack, no company harvesting data, and no single point of failure. Every user owns their identity with cryptographic keys they control.
Think "Login with Google" but decentralized, privacy-first, and censorship-resistant. Users create one account and use it everywhere — and no one sits in the middle.
When you integrate Flowsta, you're joining a movement of developers building applications that respect their users.
What Your Users Get
Integrating Flowsta gives your users something no other auth provider can offer. This is a competitive advantage for your app.
Zero-Knowledge Privacy
Passwords never leave the user's device. Data is encrypted with keys only they hold. It's mathematically impossible for anyone to access their data — not even Flowsta staff.
Flowsta Identity
Users create one Flowsta Identity and use it across every app in the ecosystem — web and desktop. One account, everywhere. No more creating new credentials for every service.
W3C Decentralized Identity
Every user gets a W3C-standard DID — a portable, self-sovereign identifier that they own forever, independent of any company.
Flowsta Vault Desktop App
Users can install Flowsta Vault to keep their encryption keys on their own machine, enable offline logins, and use Holochain-native apps directly.
Offline Access
With Vault installed, users can authenticate to desktop apps without an internet connection. No server dependency for local-first applications.
True Self-Custody
A 24-word recovery phrase gives users absolute ownership. No reset emails, no support tickets — they hold the keys to their digital identity.
Two Ways to Build
Flowsta is an identity platform that works across the web you know today and the decentralized web being built tomorrow.
Web & Mobile Apps
OAuth 2.0 + PKCEAdd "Login with Flowsta" to any web or mobile app using standard OAuth 2.0. Works with any language, any framework, any OAuth library. No proprietary SDK required.
- Industry-standard Authorization Code Flow
- Granular scopes (email, display name, DID, etc.)
- User consent screen with clear permissions
- Works with existing OAuth libraries
- Optional @flowsta/auth SDK for faster integration
Holochain Desktop Apps
Vault IPCBuild peer-to-peer desktop applications that authenticate through Flowsta Vault. Your app runs locally on the user's machine with its own Holochain conductor — no server required.
- Local IPC authentication via Flowsta Vault
- Offline-first — works without internet
- Peer-to-peer data sync via Holochain DHT
- User's identity linked across web and desktop
- @flowsta/auth-tauri SDK for Tauri apps
One identity across both worlds. A user who signs up via your web app can open your desktop app and be recognized as the same person — without creating a new account, without a central server, and without you storing any credentials.
What You Get as a Developer
Whether you're building for the web or the decentralized future, Flowsta gives you the tools to do it without compromise.
W3C DIDs as User Identity
Every user has a W3C Decentralized Identifier — a stable, globally unique ID that works across web apps, desktop apps, and the wider decentralized ecosystem. No email-as-ID fragility.
Zero-Knowledge Analytics
Track Monthly Active Users without storing any personally identifiable information. Analytics IDs are random UUIDs generated on the user's device — mathematically unlinkable to their identity.
Cross-Platform Identity
A single Flowsta identity works across your web apps and Holochain desktop apps. Users authenticated via OAuth on the web are the same verified identity in Vault on the desktop.
No Vendor Lock-In
OAuth apps use standard protocols — any OAuth library works. Holochain apps use open-source SDKs. Your users' DIDs are portable. Nothing ties you to Flowsta's infrastructure.
Peer-to-Peer Ready
Desktop apps built with Vault run on Holochain's DHT — peer-to-peer data sync with no central server. Your users' data lives on their machines, not yours.
10,000 MAU Free Forever
Start building without a credit card. The free tier includes 10,000 Monthly Active Users across both OAuth and Holochain apps. Scale when you're ready.