Why do developers look for a Firebase Auth alternative?
Firebase Authentication only knows who a user is. Their notes, settings and orders live in Firestore, and you connect the two by writing security rules that compare request.auth.uid with a field on every document. Get one rule wrong and a user can read someone else's data.
Other common reasons are vendor lock-in to Google Cloud, costs that are hard to predict on reads and writes, and wanting a plain REST API that any language can call.
How is Neuctra Authix different from Firebase?
In Neuctra Authix every record belongs to the user who created it. When a browser or mobile app calls the API with an API key, the server pins the request to the signed-in user, so they can only reach their own records. You do not write ownership rules; the API enforces them.
- One SDK for sign-up, login, sessions and data, instead of Auth plus Firestore.
- Schemaless JSON records grouped into categories such as notes or orders.
- Built-in search, cursor pagination, optimistic versioning and atomic batch writes.
- Flat monthly pricing with no charge per read or write.
Neuctra Authix vs Firebase Auth at a glance
| Feature | Firebase Auth + Firestore | Neuctra Authix |
|---|---|---|
| Where user data lives | Firestore, a separate product | Same API as the user account |
| Tying data to its owner | Security rules you write | Enforced by the API |
| Email and password login | Yes | Yes |
| Google, Apple and social login | Yes | Not yet |
| Phone login and MFA | Yes | No |
| Realtime listeners | Yes | No |
| Pricing | Per read, write and verification | Flat monthly plans, free tier |
| SDKs | Web, iOS, Android, Flutter and more | JavaScript, React, Python, Flutter |
How do you get started with Neuctra Authix?
- 1
Create an app
Sign up for a free Neuctra Authix account and create an app in the dashboard to get an app ID and an API key.
- 2
Install the SDK
Install the JavaScript, Python, or Dart SDK on your backend and create a server-side client with your app ID and account API key.
- 3
Sign users up and in
Call signupUser and loginUser. Sessions are handled with an HttpOnly cookie, and email verification and password reset are built in.
- 4
Store data for each user
Verify the visitor in your backend, derive their user ID from that session, and use it for Authix user data operations.
import "server-only";
import { NeuctraAuthix } from "@neuctra/authix";
const authix = new NeuctraAuthix({
appId: process.env.AUTHIX_APP_ID,
apiKey: process.env.AUTHIX_API_KEY,
});
// In a backend route, first authenticate the visitor with your app's session.
const userId = await requireAuthenticatedUserId(request);
// Then pass only that verified id to Authix.
await authix.addUserData({
userId,
dataCategory: "notes",
data: { title: "First note", pinned: true },
});When should you stay on Firebase?
Stay on Firebase if you need social or phone sign-in, multi-factor authentication, realtime listeners or offline sync. Neuctra Authix does not do those today, and we would rather you know now than after a migration.
Frequently asked questions
Is Neuctra Authix a drop-in replacement for Firebase?
No. It replaces Firebase Authentication plus the per-user part of Firestore, through a different SDK. Moving over means changing your sign-in and data calls, and exporting your users and records from Firebase.
Can I use it in Flutter instead of Firebase?
Yes. The official Dart and Flutter SDK covers sign-up, login, sessions, email verification, password reset and per-user data, with cursor pagination, atomic batches and optimistic concurrency.
Does it support Google or social sign-in?
Not yet. Neuctra Authix supports email and password sign-in with email verification and password reset. If Google, Apple or phone sign-in is required, Firebase is the better fit today.
Do I still need Firestore security rules?
No. Ownership is enforced by the API itself. An API key only ever reaches the signed-in user's own records, and the API key, which can reach everything, stays on your server.
Is there a free plan?
Yes. The Free plan includes 3 apps, 1,000 users per app and 25,000 API requests a month, with no credit card required.
