Explore 2387 PostgreSQL extensions from PGEXT, maintained by Pigsty.
182 extensions found. Clear filters
| Name | Version | Description | Category | License | Language | PG Version | Stars |
|---|---|---|---|---|---|---|---|
| pg_audit | 0.1.3 | An extension for creating audit tables | SEC | BSD-2-Clause | SQL | 10–18 | 10 |
| pg_cel | 0.1.0 | A pure PostgreSQL implementation of the Google Zanzibar / OpenFGA authorization model. | SEC | Apache-2.0 | Rust | — | 10 |
| grants_manager | 0.0.1 | Declarative PL/pgSQL toolkit for snapshotting, reporting, and aligning database object grants. | SEC | — | SQL | — | 9 |
| pg_auditor | 0.2 | Audit data changes and provide flashback ability | SEC | BSD-3-Clause | SQL | 14–18 | 9 |
| pgjwt_rs | 0.1.2 | JWT verification for RS256 and Ed25519 tokens inside PostgreSQL | SEC | MIT | Rust | 13–18 | 8 |
| drop_role_helper | 1.0 | Generates SQL to revoke all privileges held by a role in the current database. | SEC | PostgreSQL | SQL | — | 7 |
| noddl | 1.0 | Cluster-wide DDL blocker with role and database exceptions. | SEC | MIT | C | — | 7 |
| noset | 0.3.0 | Module for blocking SET variables for non-super users. | SEC | AGPL-3.0 | C | 14–18 | 6 |
| pg_pii_vault | 0.0.0 | PostgreSQL extension for GDPR-compliant column-level encryption using HashiCorp Vault Transit Engine. | SEC | MIT | Rust | 13–18 | 6 |
| pg_vault_tde | 1.7.1 | Transparent Data Encryption for PostgreSQL through custom table and index access methods | SEC | PostgreSQL | C | 17–18 | 6 |
| pgseccomp | 1.0 | provide seccomp syscall filtering for PostgreSQL | SEC | PostgreSQL | C | — | 6 |
| roleman | 0.3.0 | Parameterized role and privilege management functions for PostgreSQL. | SEC | PostgreSQL | SQL | 10–18 | 6 |
| accumulo_access_pg | 0.1.5 | PostgreSQL extension for parsing and evaluating Accumulo Access Expressions. | SEC | MIT | Rust | 15 | 5 |
| blake2b | 1.0 | PostgreSQL extension for fast secure hashing | SEC | MIT | C | — | 5 |
| email_guard | 0.35.0 | Supabase Auth signup guard that blocks disposable email domains and normalizes Gmail addresses. | SEC | Apache-2.0 | SQL | — | 5 |
| oidc_validator | 0.1.0 | PostgreSQL 18 OIDC bearer-token validator plugin written in Rust | SEC | — | Rust | 18 | 5 |
| password_profile | 1.0.0 | password_profile: Advanced password security and policy enforcement | SEC | GPL-3.0 | Rust | — | 5 |
| pg_kpart | 1.0 | Reject full partition scans that omit the partition key | SEC | ISC | C | 14–18 | 5 |
| pgx-s3sign | 1.0 | Sign S3 requests, fast: Created by pgx | SEC | MIT | Rust | — | 5 |
| uniphant | 1.5 | PostgreSQL-centric authentication and authorization demo integrating WebAuthn, PostgREST, and role-based access control. | SEC | MIT | SQL | 13 | 5 |
| ac | 0.0.1 | Access Control Postgres extension (with dev environment) | SEC | — | SQL | — | 4 |
| otp | 1.0.0 | Implementation of TOTP compatible with Google Authenticator | SEC | PostgreSQL | SQL | 10–18 | 4 |
| passwordcheck_cracklib | 3.1.0 | Strengthen PostgreSQL user password checks with cracklib | SEC | LGPL-2.1 | C | 14–18 | 4 |
| pg_ed25519 | 0.2 | Ed25519 signing and signature-verification functions for PostgreSQL | SEC | MIT | C | 10–18 | 4 |
| pg_role_fkey_trigger_functions | 1.0.4 | A bunch of trigger functions to help establish and/or maintain referential integrity for columns that reference PostgreSQL ROLE NAMEs. | SEC | PostgreSQL | SQL | — | 4 |
| pg_sulog | 1.0 | PostgreSQL superuser operation logging and blocking extension | SEC | PostgreSQL | C | — | 4 |
| rls_oso | 0.0.0 | PoC postgres plugin to use oso authorization in row level security policies | SEC | — | Rust | — | 4 |
| tce | 0.10.0-dev | Transparent column encryption for PostgreSQL using per-role envelope keys and external key-management services. | SEC | PostgreSQL | Rust | 15–18 | 4 |
| tcle | 1.0 | Experimental table access method for transparent AES-256-CBC encryption of selected column types. | SEC | PostgreSQL | C | 12–13 | 4 |
| block_copy_command | 0.1.5 | Block COPY commands via a configurable ProcessUtility hook | SEC | BSD-3-Clause | Rust | 14–18 | 3 |
| pg_dbo_timestamp | 1.0.1 | PostgreSQL extension for storing time and author of database structure modification. | SEC | — | SQL | 10–18 | 3 |
| pg_multitenant | 1.0 | Multi-tenant shared-schema helpers using PostgreSQL row-level security | SEC | MIT | Rust | 16 | 3 |
| postgrest_auth | 0.1 | Placeholder PostgREST authentication extension with no implemented database objects | SEC | MIT | SQL | — | 3 |
| verisql | 0.1.0 | Audit-grade verification gateway for AI-generated SQL — catches silently wrong queries before they hit your dashboard, keeps tamper-evident audit trails, verifies migration equivalence. Zero LLM tokens for 90% of checks. | SEC | MIT | Python | — | 3 |
| cairn_pgx | 0.3.0 | Cairn in-database verify gate — COSE Sign1/Ed25519 event verification (Spike 0002) | SEC | — | Rust | — | 2 |
| ed25519 | 1.0 | PostgreSQL extension for a modern and secure digital signature algorithm based on performance-optimized elliptic curves | SEC | MIT | C | — | 2 |
| login_refuse | 0.1 | Authentication hook that temporarily refuses logins after repeated failures | SEC | — | C | — | 2 |
| op_log | 1.0.0 | Trigger-based row change history recorded after transaction commit. | SEC | Apache-2.0 | SQL | — | 2 |
| passwordpolicy | 2.0.5 | Dynamically configurable PostgreSQL password complexity checks. | SEC | PostgreSQL | C | 14–18 | 2 |
| pg_crypto | 0.1.0 | Rust cryptography with pgcrypto-compatible and modern primitives | SEC | MIT | Rust | 14–18 | 2 |
| pg_idm | 1.0 | Exposes PostgreSQL role and membership management through updatable views and DML-trigger functions. | SEC | GPL-3.0 | SQL | 10–18 | 2 |
| pg_pwhash | 1.0 | Advanced password hashing methods for PostgreSQL | SEC | MIT | C | 14–18 | 2 |
| pg_ssl | 1.0 | Create base64-encoded PKCS#7 signatures from PEM certificates and private keys in PostgreSQL | SEC | MIT | C | — | 2 |
| pg_tamperlog | 1.1 | Tamper-evident append-only audit logging with hash chaining | SEC | — | SQL | — | 2 |
| pg_tamperlog_rust | 1.0.0 | Rust pgrx helper extension for pg_tamperlog fast SHA-256 hash-chain calculations. | SEC | — | Rust | — | 2 |
| pgfga | 0.1.0 | Experimental ReBAC/Zanzibar-style fine-grained authorization functions for PostgreSQL. | SEC | MIT | Rust | 11–16 | 2 |
| pgocrypto | 1.0 | encrypt data between Go and PG | SEC | — | SQL | — | 2 |
| pgpm-defaults | 0.15.5 | PostgreSQL modules using the pgpm workflow for safe, testable, reversible SQL changes. | SEC | MIT | C | — | 2 |
| pgsqlauditengine | 1.0 | SQL policy checks with an embedded rule and audit REST API | SEC | GPL-3.0-only | C | 11–18 | 2 |
| supasession | 0.1.2 | Advanced session management for Supabase. | SEC | PostgreSQL | SQL | — | 2 |