Ory logo

Ory Agent DX: Agent Plugins Agents don't build auth. They use Ory.

Build customer identity, OAuth, permissions, B2B SSO, or agent security – with Ory best practices baked in. One command spins up a local environment in seconds.

Works with

Claude
Gemini
Codex
OpenClaw
OpenCode

Ory is powerful, and that means there's a lot to learn and explore.

The Ory Agent Plugin is your guided path through it. It teaches your agentic coding tool to generate Kratos identity flows, register Hydra OAuth clients, and model Keto permissions, using the patterns Ory engineers and identity security experts would recommend.

Get started with your preferred AI tool

Ory provides packages for five AI coding agent harnesses that works whether you're self-hosting Ory or using Ory Network. Install, share, and send us feedback in our Slack community:

Claude Code
/plugin marketplace add ory/claude-plugins
/plugin install ory-agent-plugin@ory

Building with Ory has never been easier

  • Skill catalog

    Skills cover full auth setup with Ory Elements, login and registration with recovery, verification, and settings, social sign-in with major providers such as Google, Apple, and more.

  • One-command local stack

    One command brings Kratos, Hydra, and Keto, online locally — seeded and ready. No cloud account, no config files from scratch necessary.

  • Ory best practices baked in

    Built on Ory Elements, the Ory SDKs, and OAuth 2.1 with PKCE means your agent generates the same patterns recommended in Ory documentation and examples. Even better? Plugins are out of the box-ready for Ory Agent Security.

  • Use your coding agent of choice

    Same skills and policies across Claude Code, Codex, Gemini CLI, OpenClaw, and OpenCode. One package per agent on a shared client enables you to switch coding agents without rewriting your Ory integration.

  • MCP server included

    The Ory CLI and REST API are exposed as MCP tools. Your agent creates identities, registers OAuth clients, and manages relation tuples without you copy-pasting commands.

  • Built for flexibility

    Self-hostable end-to-end. Run open-source Kratos, Hydra, and Keto locally — no vendor lock-in. Or use Ory Network when you want it fully managed.

How the Ory Agent Plugin works

Install once, work across agentic coding tools

The plugin ships as an npm package per agentic coding tool (@ory/claude-code, @ory/codex, @ory/gemini-cli, @ory/openclaw, @ory/opencode), all built on a shared client. Install it the way you'd install any other plugin through Claude Marketplace, the Gemini CLI extensions directory, or a single npm command. Your coding agent picks up the Ory skill catalog, slash commands, and local-stack tooling automatically.

Skills that know Ory

Skills are the playbooks your agent follows when you ask it to "add login," "add Google sign-in," or "set up a permission model." The plugin ships a canonical catalog, for example:

  • ory-local-dev: drive a local Ory instance for offline or prototyping work
  • ory-auth-setup: full Ory Network setup wired through Ory Elements
  • ory-login-flow: login, registration, recovery, verification, and settings flows
  • ory-social-login: Google, GitHub, Apple, Microsoft, and other OIDC providers

A local Ory stack, one command away

local up brings up a Docker-based Ory dev environment, all reachable at localhost:4000. The stack is seeded with a working identity schema and example clients, so the moment your agent finishes scaffolding the frontend, there's already a backend that responds to it. local down tears it back down. No leftover containers, no shared cloud state between projects.

MCP server for the Ory CLI

The plugin includes @ory/mcp-server, which exposes the Ory CLI and REST API as MCP tools. Your coding agent can create identities, register OAuth clients, manage relation tuples, and inspect Ory Network projects directly — without you copy-pasting commands. The same MCP server works against a local stack or an Ory Network project, so the agent's workflow doesn't change when you graduate from local dev to a hosted environment.

Ory Agent Security: One security plane for all of your coding agents.

Building agents? Running them in production? Then the gap is already open. Good news? Ory Agent Plugins provide the scaffolding for Ory Agent Security, providing in-the-loop controls and enforcement built directly into the agent runtime.

Frequently asked questions

Ory Agent DX: Build secure apps at the speed of thought, the right way.

Ory Agent DX is the ultimate developer toolkit that unifies AI automation with Ory’s hardened security ecosystem. By seamlessly blending Model Context Protocol (MCP) servers, plugins, CLI, and Ory Elements, it gives developers a conversational, agent-led workflow to develop enterprise-ready identity, access management, and fine-grained permissions.

More on agent security

Try Ory today Start for free