Amiri.fi gives developers and small teams one secure account system, optional two-factor, and short-lived tokens that every app, script and service can verify offline.
Small teams end up with hard-coded API keys, shared passwords and a different login for every tool. Enterprise identity platforms solve this, but they are expensive, complex and built for companies with a security department.
Long-lived keys copied into scripts and config files, never rotated, impossible to revoke cleanly.
Hosted identity providers price per active user and lock you into their cloud.
Hashing, sessions, 2FA and token signing done right takes time most builders don't have.
A lightweight identity service you can run as a single binary-sized app with one database file — no external services required.
Argon2id password hashing, server-side sessions and httpOnly cookies — current best practice out of the box.
TOTP 2FA with secrets encrypted at rest. Works with any authenticator app.
Programs exchange a scoped API key for a 15-minute ES256 token. Leaked tokens expire on their own.
Any service verifies tokens against a public JWKS endpoint — no network call, no single point of failure.
Fine-grained scopes per key and an introspection endpoint when you need instant revocation.
Run it on your own server behind nginx, keeping user data in your own jurisdiction — GDPR-friendly by design.
# exchange an API key for a token curl -X POST https://amiri.fi/api/v1/token \ -H "Authorization: Bearer ak_..." # → response { "access_token": "eyJhbGciOiJFUzI1NiIs...", "expires_in": 900, "scope": "read:data" } # verify anywhere, offline GET /.well-known/jwks.json
The core service is built and running. The startup program would help us turn it into a hosted product for developers and small teams.
Accounts, 2FA, sessions, API keys, JWT issuing and JWKS verification.
Managed version with teams, organisations and self-serve onboarding.
Drop-in SDKs, passkeys and OAuth/OIDC so Amiri.fi becomes the login for everything you build.
Interested in Amiri.fi, partnering, or trying the early version? Reach out directly.
hello@amiri.fi