PkLogin 2.1 · MIT · Spigot · Paper · Folia · Velocity

Complete Minecraft authentication, MIT licensed

Passwordless premium login, Discord 2FA, Argon2id, PostgreSQL and Velocity. Nothing is held back for a paid tier — you get the whole plugin, and all of its source.

What it does

Passwordless premium login

Register a paid nickname and PkLogin asks whether it is yours. One click, one reconnect, and Mojang’s own handshake logs you in from then on — no password, ever again.

Six password algorithms

BCrypt, Argon2id, PBKDF2, salted SHA-512/256 and read-only AuthMe SHA256. Change the algorithm any time — existing hashes are re-hashed on the next login.

Discord 2FA

Link an account through a DM bot and receive a single-use code on every session. Codes expire after five minutes and allow five attempts.

Login sessions

Reconnect soon after leaving and skip the password. One disconnect buys one reconnect, tied to the address the player was on.

Five database engines

SQLite and H2 need no configuration. MySQL, MariaDB and PostgreSQL connect to a server. Move between them with one command, without losing anything.

Signed proxy messages

Auto-login messages carry an HMAC keyed from the Velocity forwarding secret, and the proxy names any backend that fails its verification check.

18 translations

English, Spanish, Portuguese, French, German, Russian, Chinese and more, all editable in plain YAML.

Developer API

Async account, security and session services plus Bukkit and Velocity events, so your plugins can react to logins.

Up and running

Drop the jar in, turn the server off online mode, start it. Config files generate themselves.

plugins/PkLogin.jar
server.properties   online-mode=false
/pklogin reload
Full installation guide

Behind a Velocity proxy?

There is nothing to configure. The proxy mode and the signing key are both read from settings your network already has, so there is no second copy to keep in sync.

[PkLogin] Backend 'auth' verified: PkLogin 2.1,
          matching signing key (14 ms).
Proxy setup