Documentation Index
Fetch the complete documentation index at: https://docs.xreatlabs.space/llms.txt
Use this file to discover all available pages before exploring further.
NexAuth Features
NexAuth provides enterprise-grade authentication features for Minecraft servers with multiplatform support and advanced security capabilities.Core Features
Multiplatform Support
Works seamlessly across Velocity proxies and Paper servers with unified authentication.
Secure Authentication
Advanced security with encryption, session management, and attack prevention.
Premium Account Support
Automatic premium account authentication with optional offline mode support.
Advanced Security
Session Management
Session Management
NexAuth implements intelligent session management to balance security and user convenience:
- Configurable session duration - Control how long players remain logged in
- IP-based session validation - Optional IP binding for enhanced security
- Cross-server sessions - Unified authentication across multiple servers
- Secure session storage - Encrypted session data in the database
Two-Factor Authentication
Two-Factor Authentication
Add an extra layer of security with TOTP-based 2FA:
- TOTP support - Compatible with Google Authenticator, Authy, etc.
- QR code setup - Easy 2FA enrollment with QR code generation
- Backup codes - Recovery codes for account access
- Optional enforcement - Require 2FA for specific player groups
Premium Account Integration
Premium Account Integration
Offline Mode Support
Offline Mode Support
Full-featured authentication for offline/cracked servers:
- Secure password hashing - Industry-standard bcrypt with salt
- Password strength requirements - Configurable complexity rules
- Account recovery - Admin tools for account management
- Migration support - Import from other auth plugins
Platform Integration
Bedrock Edition Support
Native support for Bedrock players via Floodgate with proper authentication handling.
Limbo Integration
Limbo server integration for pre-authentication player handling.
Developer Features
Extensible API
Extensible API
Build custom integrations with NexAuth’s comprehensive API:
- Event system - React to authentication events
- Provider API - Custom authentication providers
- Database abstraction - Support for multiple database backends
- Crypto utilities - Hashing and encryption utilities
Plugin Integration
Plugin Integration
Integrate NexAuth with your existing plugins:
- Vault integration - Economy and permissions support
- PlaceholderAPI support - Dynamic placeholders for auth status
- ProtocolLib compatibility - Advanced packet handling
- BungeeCord/Velocity messaging - Cross-server communication
Security Features
Enterprise Security
NexAuth implements multiple security measures to protect player accounts:
- Brute force protection - Rate limiting and account lockouts
- SQL injection prevention - Parameterized database queries
- Password hashing - bcrypt with adaptive work factor
- Session hijacking prevention - IP validation and secure cookies
- Encryption at rest - Sensitive data encrypted in database
- Audit logging - Comprehensive authentication event logging
Performance & Scalability
High Performance
Optimized for large servers with concurrent player handling, database connection pooling, and async operations.
Cloud Native
Designed for modern infrastructure with support for containerized deployments and cloud databases.
Feature Comparison
Roadmap
Planned Features
Planned Features
We’re continuously improving NexAuth. Here’s what’s coming:
- Web dashboard - Browser-based account management
- OAuth integration - Support for external OAuth providers
- Biometric auth - WebAuthn support for passwordless login
- Advanced analytics - Authentication metrics and reporting
- Cloud backup - Secure cloud-based account data sync
Next Steps
Installation Guide
Get started with NexAuth installation and setup.
Command Reference
Learn about all available commands for players and administrators.

