Security News
Node.js EOL Versions CVE Dubbed the "Worst CVE of the Year" by Security Experts
Critics call the Node.js EOL CVE a misuse of the system, sparking debate over CVE standards and the growing noise in vulnerability databases.
@blackbaud/auth-client
Advanced tools
Provides methods for obtaining an authentication token from the Blackbaud authentication service.
Provides a client-side library for interacting with Blackbaud authentication.
node -v
and npm -v
at the command line.npm install @blackbaud/auth-client --save
in your project's folder.The auth client library makes extensive use of ES6-style Promises, so in order to support browsers that do not yet have native support for Promises (such as Internet Explorer 11) you will need to include a Promise polyfill such as es6-promise
and use the auto-polyfill feature of the library so that Promise
is added to the global environment. This will need to be loaded on your page before the auth client library.
There are two classes available in this package: BBAuth
and BBOmnibar
. BBAuth
allows you to retrieve an auth token from the Blackbaud authentication service, and BBOmnibar
allows you to render the omnibar at the top of the page.
You can use these in combination to integrate your application with Blackbaud authentication.
import { BBAuth, BBOmnibar } from '@blackbaud/auth-client';
// Make an initial attempt to get an auth token. If the user is not currently logged in,
// this code will redirect the browser to Blackbaud's sign-in page.
BBAuth.getToken()
.then(() => {
// The user is logged in; load the omnibar.
BBOmnibar.load({
serviceName: 'Some service name'
});
// Add additional logic to bootstrap the rest of the application.
});
To make authorized requests to your web service endpoints you will also use the BBAuth.getToken()
method to retrieve a token that can be added as a header to your request. Since retrieving a token is an asynchronous operation, this method returns a Promise
, so you should wait until the Promise is resolved before making your web request.
import { BBAuth } from '@blackbaud/auth-client';
BBAuth.getToken()
.then((token: string) => {
const xhr = new XMLHttpRequest();
xhr.open('GET', url, true);
xhr.setRequestHeader('Authorization', 'Bearer ' + token);
xhr.send();
});
Auth client is also distributed as a UMD bundle. If you're using ES5 with Node or a tool like Browserify you can require()
it:
var BBAuthClient = require('@blackbaud/auth-client');
BBAuthClient.BBOmnibar.load({
serviceName: 'Some service name'
});
If you're using no module loader at all, then you can load the dist/bundles/auth-client.umd.js
file onto your page and via a <script>
element or concatenated with the rest of your page's JavaScript and access it via the global BBAuthClient
variable:
// BBAuthClient is global here.
BBAuthClient.BBOmnibar.load({
serviceName: 'Some service name'
});
FAQs
Provides methods for obtaining an authentication token from the Blackbaud authentication service.
The npm package @blackbaud/auth-client receives a total of 174 weekly downloads. As such, @blackbaud/auth-client popularity was classified as not popular.
We found that @blackbaud/auth-client demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 2 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Critics call the Node.js EOL CVE a misuse of the system, sparking debate over CVE standards and the growing noise in vulnerability databases.
Security News
cURL and Go security teams are publicly rejecting CVSS as flawed for assessing vulnerabilities and are calling for more accurate, context-aware approaches.
Security News
Bun 1.2 enhances its JavaScript runtime with 90% Node.js compatibility, built-in S3 and Postgres support, HTML Imports, and faster, cloud-first performance.