ToolCompare
All tools

Developer Tools

BookStack

Self-hosted documentation platform organized into shelves, books, chapters and pages.

What it is

BookStack is an MIT-licensed, self-hosted documentation application built around shelves, books, optional chapters and pages. It provides role and content-level permissions, multiple enterprise authentication options and a permission-aware REST API, but the operator remains responsible for the PHP and database stack, upgrades, filesystem permissions, security configuration and complete database-plus-file backups.

Key features

  • Book hierarchy

    Organizes page content within optional chapters, books and reusable bookshelves.

  • Roles and permissions

    Combines system roles with content-level overrides and inherited controls.

  • Federated authentication

    Documents OIDC, SAML 2.0 and LDAP configuration for self-hosted instances.

  • REST API

    Provides token-authenticated JSON endpoints governed by the API user's permissions.

Strengths and trade-offs

What works well

  • Predictable structure: Shelves, books, chapters and pages give teams a constrained documentation hierarchy.
  • Granular access: Roles can be combined and overridden at shelf, book, chapter or page level.
  • Authentication choices: Official administration docs cover OpenID Connect, SAML 2.0 and LDAP.
  • Automation surface: The REST API covers content and administrative resources while enforcing the API user's roles and permissions.

Where it falls short

  • Self-hosting burden: PHP, MySQL or MariaDB, web-server configuration, updates and monitoring are operator responsibilities.
  • Manual recovery design: There is no built-in full backup and restore; both database records and instance files must be protected.
  • Key dependency: Restores need the original APP_KEY for encrypted features such as multi-factor credentials.
  • Hierarchy trade-off: The book metaphor is approachable but may constrain teams needing free-form graphs or complex publishing workflows.

Who it is for

Teams that want structured internal documentation and can securely operate a PHP and MySQL-compatible application.

Our verdict

Choose BookStack when its constrained hierarchy matches the knowledge model and self-hosting is deliberate; validate identity mapping, permission inheritance, upgrades and a full database-plus-files restore before broad adoption.

Closest alternatives we track

Same category, ordered by verified starting price.

What we checked

  • Public APIOffers a documented API you can build against.Yes
  • Mobile appHas a native app for iOS or Android, not just a mobile website.No
  • Open source / self-hostableSource is open and the tool can be run on your own infrastructure.Yes
  • SSO (SAML)Supports SAML single sign-on on at least one plan.Yes

“Not checked” means exactly that — we have not verified it, and we do not guess.

Evidence and freshness

Status: Official sources reviewedReviewed: 2026-08-24

Limit: Official project documentation and the project-hosted demo API reference were reviewed; ToolCompare did not install BookStack, test authentication or permission edge cases, inspect API completeness, assess custom themes, execute an upgrade, penetration-test the service, benchmark scale or perform a backup restore.

Compare BookStack with alternatives

See all BookStack alternatives ranked →