Huge News!Announcing our $40M Series B led by Abstract Ventures.Learn More
Socket
Sign inDemoInstall
Socket

@ackee/petrus

Package Overview
Dependencies
Maintainers
7
Versions
109
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@ackee/petrus

A tool for handling token-based authentication in React/Redux/Redux-Saga applications

  • 7.0.2
  • latest
  • Source
  • npm
  • Socket score

Version published
Weekly downloads
104
decreased by-58.89%
Maintainers
7
Weekly downloads
 
Created
Source

ackee|Petrus

GitHub license bundlephobia

Petrus

A tool for handling token-based authentication in react, redux, redux-saga applications.

It automatically refreshes an access token based on provided expiration timestamp, persists state, so the authentication session can last longer.


Table of contents


Installation

$ yarn add @ackee/petrus

Stack Dependencies

@ackee/petrus requires a following peer dependencies:

 "core-js": "3.x",
 "react": "16.x | 17.x | 18.x",
 "react-redux": "7.x | 8.x",
 "redux": "4.x",
 "redux-saga": "1.x"

Usage examples

Authentication flows

  1. Direct authentication (with password)

    • Basic config
      • Obtaining tokens with authenticate method by sending credentials to an endpoint from loginRequest Redux action.
      • Fetching authorized user with getAuthUser method.
      • Automatically refreshing accessToken based on provided expiration prop.
      • Tokens and auth. user local persistence in IndexedDB.
      • Using custom TS types for auth user, tokens, and credentials.
  2. Federated authentication (with a token)

    • OAuth 2.0 – Authorization Code Flow

      What's an authorization code flow?

      • The front channel flow is used by the client application to obtain an authorization code grant.
      • The back channel is used by the client application to exchange the authorization code grant for an access token (and optionally a refresh token).
      • High security flow.
    • OAuth 2.0 – Implicit Flow

      What's an implicit flow?

      • An access token is returned directly from the authorization request (front channel only). It typically does not support refresh tokens.
      • This flow is also called 2 Legged OAuth.
      • Low security by default, make sure to follow at least these security rules.

    Of course, you can choose from any other numerous flows available.
    Learn more about OAuth flows in "What the heck is OAuth?" article.

Other examples

  1. Usage with @ackee/antonio API client

FAQs

Package last updated on 11 Jun 2024

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc