Comfy-Org / Comfy-Org/ComfyUI

Feature Request: Built-in User Authentication / Password Protection for Web UI

Abierto
#10,653 1 comentario 2 reacciones 0 asignados Ver en GitHub
Feature
Lenguaje dominante
Python
Estrellas
133k
Forks
15.7k
Merge medio
1 d 7 h
PR fusionados (30 d)
158

Descripción

### Feature Idea

Is your feature request related to a problem? Please describe.

Currently, when running ComfyUI with remote access enabled (e.g., using the --listen flag or running on a publicly accessible server), the web interface is accessible to anyone who knows the IP and port, as there is no built-in mechanism for user authentication or password protection. This poses a significant security risk for users who host their instance on a shared network or cloud environment.

Describe the solution you'd like

I propose adding a built-in, optional user authentication feature to the ComfyUI core. This could be implemented via:

Command-line arguments: E.g., --username and --password .

Configuration file: Allowing users to define one or more user accounts.

The feature should require users to enter credentials before accessing the main workflow interface.

### Existing Solutions

Currently, the recommended workaround is to use a reverse proxy (like Nginx or Caddy) to implement basic HTTP authentication. While effective, this requires additional software setup and technical knowledge, making it a barrier for less experienced users who simply need basic access control. A built-in feature would greatly simplify deployment and enhance security out of the box.

### Other

Implementing this would greatly improve the security and usability of ComfyUI for users running instances outside of a strictly local environment. Thank you for considering this feature!

Guía de contribución

Abrir la guía de contribución

Línea de trabajo

Start by tracing how ComfyUI exposes the web interface when launched with --listen; the issue names no repository files or tests. Compare the requested built-in access control with the existing Nginx or Caddy workaround. Done would require an agreed optional authentication design, credential configuration, protected web access, and coverage for the relevant access paths.

Escrito por el modelo de indexación a partir del texto del issue.

Evaluación

Stack tecnológico
python
Área
authentication, backend, security
Tipo de issue
Nueva funcionalidad
Dificultad
5/5
Tiempo estimado
Más de una semana
Estado de actividad
Tranquilo
Claridad
Necesita aclaración
Aptitud para principiantes
30/100

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.