About Keycloak Extension Registry
Keycloak Extension Registry catalogs community Keycloak extensions with metadata, release history, and SHA-256 checksums, and points to the upstream sources (GitHub Releases, Maven Central). It never hosts or redistributes JARs.
How extensions get listed
The initial catalog was seeded from the public list on keycloak.org/extensions. A nightly job refreshes each entry from its public GitHub repository and Maven Central: stars, releases, artifacts and checksums, and the rendered README. The registry only reads public metadata; it makes no changes to upstream projects.
Are you a maintainer?
Entries are indexed automatically from public GitHub repositories. Letting maintainers manage their own entries (via GitHub repository permissions) is planned for a later phase. In the meantime, to correct information or request that your project be removed, open an issue.
Attribution & trademarks
Repository metadata and READMEs come from GitHub; release artifacts and coordinates from Maven Central. Project names, logos and trademarks belong to their respective owners.
Privacy
The registry sets no tracking cookies and uses no third-party analytics or advertising. Pages are served statically wherever possible. We don't collect personal data from visitors beyond the transient request logs our hosting provider keeps for security and reliability. See the privacy policy for how we handle the public project and maintainer data we index.
Contact
For general questions, open an issue. To correct or remove a listing, use the correction form. To report a security vulnerability, use private vulnerability reporting (see security.txt).