OpenFGA Hosting Live In 5 Minutes

Build fine-grained authorization — permissions modeled around users, groups, resources and relationships — without operating a separate authorization stack. xCloud configures the pinned OpenFGA 1.19.0 image, a private PostgreSQL database, a generated API key and the HTTPS reverse proxy in minutes, ready for your first store and authorization model.

  • No terminal
  • No technical skills needed
  • No lock-in, cancel anytime

From Sign-Up to a Live Authorization Check In Just 3 Easy Steps

Self-hosting a Zanzibar-style authorization service normally means a container, a database, a migration step, a domain and a certificate before a single permission check runs. This is the same result without assembling any of it.

  1. Step 01

    Sign Up

    Create your xCloud account and pick OpenFGA from the OneClick catalog. Enter a site title and choose a domain — there are no other fields to fill in.

  2. Step 02

    We Deploy It For You

    One click. We bring up the official OpenFGA 1.19.0 image alongside a private PostgreSQL 17.11 database — both pinned by immutable digest — run the database migration to completion, generate a database role and a 48-character API key, and publish the HTTP API over HTTPS on your domain.

  3. Step 03

    Create A Store And Check A Permission

    Copy your HTTPS endpoint and generated API key from the Credentials panel, send it as a Bearer token, create a store and an authorization model, write a relationship tuple, then call Check and confirm it returns allowed: true.

Everything OpenFGA Does, On Your Own Server

OpenFGA runs in full here — stores, authorization models, relationship tuples and permission checks, on infrastructure you control.

  • Relationship-Based Authorization

    Model fine-grained permissions around users, groups, resources and relationships, in the style of Google Zanzibar.

  • Stores And Authorization Models

    Create isolated stores, define authorization models, and version them as your permission logic evolves.

  • Low-Latency Permission Checks

    Write relationship tuples and call the Check API to answer allow/deny decisions for your application in real time.

  • Preshared-Key API Authentication

    A generated 48-character key authenticates every call to the HTTP API — the unauthenticated developer Playground stays disabled.

  • Persistent Authorization Data

    Stores, models, tuples and migration state persist on their own PostgreSQL volume across restarts.

  • Private Database, gRPC And Metrics

    PostgreSQL, gRPC and metrics stay on the internal network — only the OpenFGA HTTP API is published over HTTPS.

Everything You Need To Run Your Authorization Service 24/7

Managed hosting for OpenFGA, so the parts that keep it online are not your problem.

  • OpenFGA 1.19.0 deployed instantly
  • Official pinned image digests
  • Generated preshared API key at setup
  • Private PostgreSQL, gRPC and metrics, not exposed to the internet
  • Free SSL certificate
  • Server backups and snapshots
  • Server security updates included
  • 30+ server locations
  • Unused balance refunded

Simple Pricing. Everything Included.

Dedicated Cloud VPS sizes, pre-configured for OpenFGA hosting. Pick the one that fits, and resize any time.

Cloud VPS 6 GB

Most popular

Fine-grained authorization for a single application.

$24.99per month

  • 6 GB RAM
  • 4 vCPU cores
  • 100 GB NVMe SSD
  • 30 TB
  • Unlimited
Get started

Cloud VPS 16 GB

More headroom for higher check throughput.

$59.99per month

  • 16 GB RAM
  • 6 vCPU cores
  • 200 GB NVMe SSD
  • 30 TB
  • Unlimited
Get started

Cloud VPS 24 GB

OpenFGA alongside a whole self-hosted stack.

$84.99per month

  • 24 GB RAM
  • 8 vCPU cores
  • 300 GB NVMe SSD
  • 30 TB
  • Unlimited
Get started

Every size is a dedicated Cloud VPS we provision, patch, monitor and restore. Billed monthly with no lock-in — delete the server and the unused balance comes back to your account. OpenFGA itself is free under the Apache-2.0 licence.

Already Have a Server? Bring Your Own

Connect any VPS — DigitalOcean, Vultr, Linode, AWS, Hetzner or bare metal — and deploy OpenFGA on it through the same panel, for a per-server management fee instead of a Cloud VPS rental.

Free

Start your journey without cost.

$0forever

  • 1 server
  • 10 sites
Start free

Starter

Most popular

Your rate with 2–5 servers connected.

$5per server / month

  • 2–5 servers
  • Unlimited sites
  • All features included
  • Bring any VPS provider
Get started

Professional

The same platform, discounted at 6–10 servers.

$4per server / month

  • 6–10 servers
  • Unlimited sites
  • All features included
  • Bring any VPS provider
Get started

Agency

The same platform, discounted at 11+ servers.

$3per server / month

  • 11+ servers
  • Unlimited sites
  • All features included
  • Bring any VPS provider
Get started

Priced per connected server, so your rate adjusts automatically as you add or remove servers. You pay your own provider for the server itself.

Ready To Run Your Own Authorization Service?

OpenFGA on xCloud runs on a dedicated Cloud VPS that we provision, patch, monitor and restore. Deploy faster. Own the server. Stay in control.

Hear what people are saying about us

See why agencies, developers, startups, and growing businesses choose xCloud to power their projects.

xCloud works really well, I am surprised by its performance being this the release version, I have tried many paid platforms such as runcloud, cloudpages or serveravatar, as well as free platforms such as CyberPanel, CloudPanel or Hestia Control Panel and direct competitors such as SpinupWP and FlyWP. Of all those that I have tried, the platform that works best for WordPress is SpinupWP and I believe that xCloud can reach and surpass that development, its roadmap is promising. Congratulations to the xCloud team, I hope they become the leading platform in the segment, it has all the potential to achieve it!
Brian Geovanny
I've been with runcloud for the last 3 years. However, after trying xcloud for the last month, I'm switching over. They are on a roll with their setup.
Kevin Pineda
I'm moving my servers to xCloud, a cloud control panel by M Asif Rahman and the WPDeveloper team. Their roadmap looks interesting and no, there are no team mates nor API limits with xCloud! #xCloud #wordpress #hosting
Leo Koo
How Cloud Nine Web Elevated Client Experience While Streamlining Hosting Operations using xCloud
Ed Ellingham
xCloud is like having an expert server team on call — without the big agency costs. It's given me back my time and given my clients peace of mind. Highly recommended for freelancers and small teams who want reliable performance and security.
Dumitru Butucel
xCloud isn't just a solution. It's like one of that friend who got your back when you screw things up pretty bad.
Waqar Ahmed
Trust me when I say, once people explore the potential of xCloud they gonna switch from other panels, just keep delivering the best tech, lots of love for the team 😍😍
Rahul Singh
So far my experience has been smooth like silk. I didn't imagine that configuring and managing a VPS would be so easy. As of today, I have deployed 8 sites. The support is good, and they treat users with respect, even if they ask stupid questions (myself included). For the future, I hope for greater flexibility in scheduled backups and more comprehensive and consistent documentation. I'm sure that within a few months, xCloud will become the leader in its segment. This community is amazing, and the Staff here is super helpful.
Massimo Villa
Came from cloudways then to runcloud then to xcloud. Looks like I'm staying here.
Gerson El
I've recently taken all of my Vultr-hosted sites and gotten rid of cPanel for them to substitute it with xCloud. I have to say, I'm really impressed with xCloud so far! The interface is definitely the standout feature for me.
Tony Lewis
I came from Cloudways and won't go back. Highly impressed with xCloud. Glad I gave them a chance.
Jared McDowell
I like xCloud better than RunCloud, but one thing I'll point out is that some years ago RunCloud was hungry for business, the support was outstanding, and the community was active and helped each other. Maybe it was sold, there was a change in management, or they stopped being hungry, but the quality of the RunCloud offering declined and it hasn't been moving forward quickly. My point is that currently the xCloud team has the edge and it is theirs to keep or lose
David McCan
How Kevin Heinrichs Cut Hosting Costs by 84% While Running WooCommerce & Node.js Sites Efficiently
Kevin Heinrichs
I had 150 sites on cloudways and am in the process of moving them to xcloud. Much faster and better priced.
Dan Spinoza
Dear xCloud Team, I have been using xCloud for some time now and am genuinely impressed with its capabilities and the flexibility it offers by allowing users to bring their own VPS for management. It's a fantastic service, and my experience so far has been very positive. Successful migrated 5 sites on a single server. Xcloud migration tool worked great. There were few hiccups with security plugin like MalCare but disabling the plugin prior to migration worked just fine.
Rahil Maknojia
Came from runcloud. Tried xcloud and never came back.
Karl Fanega
How Advanced Web Strategies Saved Over $2,000 & Recovered 56 Hours per Month Managing 70+ Client Websites
Gary Moody
xCloud gave me what no other hosting platform could: the flexibility of a VPS with the convenience of managed WordPress. As a solo founder running an entire business on one server, that combination is an important unfair advantage.
Jorge de los Reyes Martínez
I use Server Avatar and xCloud and I'll sooner use xCloud than Server Avatar personally.
Jay Pagano
How Newman Web Solutions Ensured Perfect Uptime and Seamless Scaling For 120+ WordPress Sites with xCloud
Lori Newman
I too have moved over to xCloud. It's pretty sweet. One click n8n and uptime Kuma apps
John Aperture
I went from Cloudways to xCloud. No intention on switching in the foreseeable future.
Blaine Moore

Frequently Asked Questions

Feel free to contact us with any questions or concerns you may have.

What is OpenFGA?

OpenFGA is a free, open-source, relationship-based authorization service inspired by Google Zanzibar — stores, authorization models, relationship tuples and low-latency permission checks over an authenticated HTTP API. This template deploys version 1.19.0.

Is OpenFGA free?

Yes — it is free and open source under the Apache License 2.0. What you pay xCloud for is the dedicated server it runs on and the management around it, not the software itself.

Can I self-host OpenFGA?

Yes — that is exactly what this template deploys. It brings up the official OpenFGA image alongside a private PostgreSQL database, both pinned by immutable digest, runs the database migration, generates an API key, mounts the persistent database volume, and publishes the HTTP API over HTTPS on your domain in minutes instead of assembled by hand.

How do I authenticate to the API?

xCloud generates a 48-character preshared API key during installation and shows it once in the Credentials panel alongside your HTTPS endpoint. Send it on every request as an `Authorization: Bearer <key>` header.

What does xCloud configure automatically?

A private PostgreSQL database with a generated name, role and password, a generated preshared API key, the completed database migration, the domain and the HTTPS route. Only the OpenFGA HTTP API is published through xCloud-managed HTTPS — PostgreSQL, gRPC and metrics stay private to the internal network.

Is the Playground available?

No. OPENFGA_PLAYGROUND_ENABLED is set to false in this template. Upstream only permits the unauthenticated developer Playground in development mode, which this production deployment does not run.

How do I rotate the API key?

Update every client configuration to use the new key at the same time you change OPENFGA_AUTHN_PRESHARED_KEYS in the xCloud Environment editor, then redeploy. The key does not rotate itself, and stale clients will fail authentication until they are updated.

How do I rotate the PostgreSQL credentials?

PostgreSQL only reads its initialization values when the volume is empty, so on an existing installation you change the role and password inside PostgreSQL first, then update the matching environment values and redeploy — not the other way around.

What should I back up?

The openfga_postgres_data volume, which holds your stores, authorization models, relationship tuples and migration state. Use PostgreSQL's own pg_dump for an application-consistent backup, and verify restoration in an isolated installation before relying on it.

Does xCloud automatically back up or update OpenFGA?

No. The template pins OpenFGA and PostgreSQL by immutable digest; a catalog re-sync affects new installations only. Before upgrading, review OpenFGA's release and migration notes, take a fresh backup, and verify health plus a representative authorization check before removing the rollback point.

What are the server requirements?

The template manifest asks for 1 GB of RAM, one CPU core and 10 GB of disk as a floor — running OpenFGA alongside its PostgreSQL datastore. This page sells the 6 GB tier, comfortable headroom above that floor for growing stores, models and tuple volume.

What survives a restart?

Everything on openfga_postgres_data, because it is a persistent named volume. Restarting the containers does not touch your stores, authorization models, relationship tuples or migration state.

Is xCloud officially partnered with OpenFGA?

No. No official partnership or endorsement between xCloud and the OpenFGA project has been verified. This is a deployment and server-management option for the open-source OpenFGA project.

Can I cancel anytime?

Yes. There is no lock-in — cancel any time. Hosting is billed monthly and charged for what you actually use, so when you delete the server the unused balance is refunded to your account, less up to 10% in payment-processing fees.

Ready to Run Your Own Authorization Service?

Connect your first server in minutes. No credit card required, and no plan you have to grow into.