Identity for the Forjio commerce suite.
Huudis is the OpenID Provider every Forjio product signs in through — plus an AWS-IAM-style policy layer for fine-grained access control. Bahasa-first. IDR-billed. Built for Indonesian SMEs who need enterprise-grade identity without the AWS tax.
What's in the box
OIDC provider
Full authorization-code + PKCE + refresh-token + device-code grants. ES256-signed JWTs. Published JWKS. Every Forjio product is an OAuth client.
AWS-style IAM
Identical JSON policy grammar to AWS IAM — Action, Resource, Condition, NotAction, NotResource, Effect. Canned Admin/Developer/ReadOnly/Billing policies per service.
MFA + backup codes
TOTP via Google Authenticator, 1Password, Authy. 10 single-use backup codes. Step-up condition keys gate sensitive actions per policy.
Audit log
Every auth event + sampled authz decision captured. Queryable per-merchant. Retention gated by tier.
SSO everywhere
Sign into any Forjio product once; Huudis silently issues tokens for the others. RP-initiated logout clears every session.
Access keys
AKIA-prefixed access keys with AWS-compatible HMAC Sig v4 — and opaque bearer tokens for simpler consumers. Rotate, revoke, scope.
Pricing
- OIDC + OAuth
- Basic MFA
- Community support
- 7-day audit log
- 3 SSO connections
- WhatsApp OTP
- Remove branding
- 30-day audit
- 99.9% SLA
- Unlimited SSO
- Advanced MFA
- SCIM
- 1-year audit
- PPN invoice
- 99.95% SLA
Enterprise available — dedicated tenant, SOC2/ISO 27001, on-prem option.