Standards-based issuance
OpenID Connect authorization code and refresh-token flows backed by OpenIddict.
Enterprise identity infrastructure
A tenant-aware identity and OpenID Connect platform for organizations that need modern authentication, explicit policy, secure token issuance, and operational ownership.
01 / THE PRODUCT
CoreIdentity combines ASP.NET Core Identity, OpenIddict, SQL Server, and tenant-specific authentication policy. It supports the flows applications expect while keeping enrollment, factors, and client ownership explicit.
Authentication, deliberately composed
OpenID Connect authorization code and refresh-token flows backed by OpenIddict.
Per-tenant choices for passwords, email codes, authenticators, external providers, registration, and MFA.
First-party passkey enrollment and sign-in, recovery paths, and secure step-up experiences.
The same EF Core schema across local SQL Server and Azure SQL, with secrets and signing keys held outside the application.
Clear separation
CoreIdentity owns secure sign-in and token issuance. Tenant, membership, policy, and client provisioning belong to the separate administration API—keeping privileged control out of public surfaces.
tenant resolved
policy evaluated
factor verified
token issuedTrust infrastructure