Skip to main content

Authentication SDK and provider support

JavaScript SDK#

JavaScript SDK 1.5.4 Auth provides login, signup, logout, handleRedirect, setSession, clearSession, getSessionToken, hasToken, isUserAuthenticated, validateSession, and getCurrentUser. Creating the client captures the sign-in redirect unless you set detectSessionInUrl: false. In a browser, the session token is stored in localStorage; only redirect state uses sessionStorage. A server or React Native keeps it in memory. authMode: 'apiKey' is for server code only and throws in a browser or React Native. See Authenticate with the JavaScript SDK.

Python SDK#

Python SDK 0.2.3 sync and async clients provide get_current_user, signInWithPassword, signInWithToken, and signOut. Store tokens outside source code, and keep server-side credentials on the server.

Refine#

Refine providers 1.3.7 expose login, logout, check, onError, register, getIdentity, and getPermissions. When no valid session is stored, check() returns redirectTo: '/login'. For access control in Refine, see Access policies SDK support.

OpenID Connect SSO#

OpenID Connect is configured in TaruviBase Console with Provider ID, Server URL (Discovery Endpoint), Display Name, Client ID, Client Secret, optional Icon, and Auto-redirect.

Other providers#

The Console may show other provider choices. To use one, contact TaruviBase support. Hosted sign-in, sign-up, logout, password reset, and invitation acceptance are covered by the hosted account flow, with sign-up controlled by security.signup-enabled.