Hacker News new | ask | show | jobs
by nikcub 264 days ago
> Chances are, if you’ve used ChatGPT, Google Labs, Cal.com or a million other websites, you’ve already interacted with Auth.js.

I missed OpenAI migrating away from auth0. They must have been one of their largest customers - anybody know the story?

6 comments

I don’t know the story, but I’m not surprised. I led an effort to switch my company to Auth0 recently and they’re… bad. They have very poor support for anything even barely outside of normal, and when things are working correctly they not very good.

But when you have a requirement to move to a third party SaaS service, I suppose Auth0 is maybe the best of a bad bunch.

Auth0 went downhill after being acquired by Okta.
And I guess it's also EXPENSIVE.
Same, I felt like I was writing my own auth. They don’t seem to understand that we’re trying to get away from the complexity of auth. I’ve talked with their sales people but may as well be talking to a wall.
I interviewed for an SRE position at Auth0 years ago. My interviewer told me it was all held together by duct tape and prayers. I'm glad I didn't end up taking that position.
To be fair that's the views of SREs everywhere
Sure, everyone ends up having a dim perspective on what they manage usually. But this was especially noticeable as he explained to me how many incidents they'd have daily, what their on-call was like, etc. In an world full of castles built with toothpicks and elmers glue this came off like it was built with wet cardboard and chewing gum.
And as a software dev they’re not wrong lol
You can probably infer some from their Ory case study: https://www.ory.sh/case-studies/openai
They migrated SSO/SAML to WorkOS, and consumer auth to forked open source.
I’ve seen a lot of talk about Auth0 but I want to put a callout to get a check on how folks feel about AWS cognito. I am Cognito vs Auth0 and I’d love to hear some real world experiences
Ory also claims they are used by openai, so I guess they built their solution on Ory services + better-auth?
"anybody know the story?"

what story??? chance are if you are planet scale enterprise, you are big enough to maintain or create or fork popular custom OSS auth themselves

I mean can you imagine the cost ??? also the effect of third party that hold your entire user data