@embody/auth
v0.1.0
Published
Authentication and principal verification for Embody applications and gateways.
Readme
@embody/auth
Authentication and principal verification for Embody application hosts.
npm install @embody/authRequires Node.js 22 or 24 and uses ESM.
Gateway JWT verification
import { gatewayJwtVerifier } from "@embody/auth";
const verifier = gatewayJwtVerifier({
issuer: "https://gateway.example.com",
audience: "kanban",
jwksUrl: "https://gateway.example.com/.well-known/jwks.json",
algorithms: ["RS256"],
});gatewayJwtVerifier validates issuer, audience, an explicit algorithm allowlist, and Embody principal claims. Configure exactly one of key or jwksUrl.
localDevVerifier is deliberately restricted to development environments. Never expose a host using it to an untrusted network.
See the authentication guide.
Licensed under the Elastic License 2.0.
