New:Microsoft Teams Notifications Are Now Available in Socket.Learn more
Get Started

@mastra/auth-firebase

Package Overview
Dependencies
Maintainers
7
Versions
167
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install
This package has malicious versions linked to the ongoing "Mastra AI framework compromise" supply chain attack.

Affected versions:

1.0.1
View campaign page

@mastra/auth-firebase

Mastra Firebase Auth integration

Source
npmnpm
Version
1.1.2-alpha.0
Version published
Maintainers
7
Created
Source

@mastra/auth-firebase

A Firebase authentication integration package for Mastra applications. This package provides seamless integration with Firebase Authentication and Firestore for user authentication and authorization.

Installation

npm install @mastra/auth-firebase
# or
yarn add @mastra/auth-firebase
# or
pnpm add @mastra/auth-firebase

Features

  • Firebase Authentication integration
  • Firestore-based user authorization
  • Support for service account credentials
  • Automatic token verification
  • User access control through Firestore

Usage

import { Mastra } from '@mastra/core/mastra';
import { MastraAuthFirebase } from '@mastra/auth-firebase';

// Initialize with default configuration
const firebaseAuth = new MastraAuthFirebase();

// Or with custom options
const firebaseAuth = new MastraAuthFirebase({
  serviceAccount: 'path/to/service-account.json',
  databaseId: 'your-database-id',
});

// Enable auth in Mastra
const mastra = new Mastra({
  ...
  server: {
    auth: firebaseAuth,
  },
});

Configuration

The package can be configured through constructor options or environment variables:

Constructor Options

  • serviceAccount: Path to Firebase service account JSON file
  • databaseId: Firestore database ID

Environment Variables

  • FIREBASE_SERVICE_ACCOUNT: Path to Firebase service account JSON file
  • FIRESTORE_DATABASE_ID or FIREBASE_DATABASE_ID: Firestore database ID

User Authorization

The package uses Firestore to manage user access. It expects a collection named user_access with documents keyed by user UIDs. The presence of a document in this collection determines whether a user is authorized.

FAQs

Package last updated on 01 Sep 2026

Related posts