Authentication SDK and provider support
JavaScript SDK#
JavaScript SDK 1.5.4 Auth provides login, signup, logout,
handleRedirect, setSession, clearSession, getSessionToken, hasToken,
isUserAuthenticated, validateSession, and getCurrentUser. Creating the
client captures the sign-in redirect unless you set detectSessionInUrl: false.
In a browser, the session token is stored in localStorage; only redirect
state uses sessionStorage. A server or React Native keeps it in memory.
authMode: 'apiKey' is for server code only and throws in a browser or React
Native. See Authenticate with the JavaScript SDK.
Python SDK#
Python SDK 0.2.3 sync and async clients provide get_current_user,
signInWithPassword, signInWithToken, and signOut. Store tokens outside
source code, and keep server-side credentials on the server.
Refine#
Refine providers 1.3.7 expose login, logout, check, onError,
register, getIdentity, and getPermissions. When no valid session is
stored, check() returns redirectTo: '/login'. For access control in Refine,
see Access policies SDK support.
OpenID Connect SSO#
OpenID Connect is configured in TaruviBase Console with Provider ID, Server URL (Discovery Endpoint), Display Name, Client ID, Client Secret, optional Icon, and Auto-redirect.
Other providers#
The Console may show other provider choices. To use one, contact TaruviBase
support. Hosted sign-in, sign-up, logout, password
reset, and invitation acceptance are covered by the hosted account flow, with
sign-up controlled by security.signup-enabled.