Compare commits

...

126 Commits

Author SHA1 Message Date
Thang Vu
83d12bd86d Merge remote-tracking branch 'origin/main' into thang-origin/feat/svelte-kit-auth-1 2022-12-14 01:33:10 +07:00
Thang Vu
36785dafb8 move to dependency 2022-12-14 01:25:21 +07:00
Thang Vu
2c5ac4c9cb remove nextauth_url, memoize locals.getSession 2022-12-14 00:26:11 +07:00
Thang Vu
aad5875299 Merge remote-tracking branch 'origin/feat/oauth4webapi-balazs' into thang-origin/feat/svelte-kit-auth 2022-12-13 22:38:14 +07:00
Balázs Orbán
df061b97c1 remove unused file, expose type 2022-12-13 16:37:19 +01:00
Thang Vu
c89e922256 commit 2022-12-13 22:25:59 +07:00
Thang Vu
5c27e85845 Merge remote-tracking branch 'origin/feat/oauth4webapi-balazs' into feat/svelte-kit-auth 2022-12-13 22:03:31 +07:00
Thang Vu
73e497958c Merge branch 'feat/oauth4webapi-balazs' into feat/svelte-kit-auth 2022-12-13 22:02:04 +07:00
Thang Vu
c066b711fb feat sveltekit 2022-12-13 22:01:13 +07:00
Thang Vu
0960844d2b revert 2022-12-13 22:00:46 +07:00
Balázs Orbán
369a27b5ed remove private from package.json 2022-12-13 14:09:45 +01:00
Balázs Orbán
ced1ca440a remove extra tsconfig files 2022-12-13 14:07:19 +01:00
Balázs Orbán
fef845762e revert next-auth 2022-12-13 14:04:46 +01:00
Balázs Orbán
4582348bfd update exports field 2022-12-13 13:59:42 +01:00
Balázs Orbán
2c209d7fef update gitignore 2022-12-13 13:56:07 +01:00
Balázs Orbán
249ebf4f78 update styles ts 2022-12-13 13:55:04 +01:00
Balázs Orbán
24f329a37f fix imports 2022-12-13 13:53:49 +01:00
Balázs Orbán
cea596968f update ignore/clean patterns 2022-12-13 13:52:24 +01:00
Balázs Orbán
9fcf85413c fix imports 2022-12-13 13:50:50 +01:00
Balázs Orbán
0939b13f28 move utils to lib 2022-12-13 13:50:08 +01:00
Balázs Orbán
3e3f9a92ac move types to lib 2022-12-13 13:46:57 +01:00
Balázs Orbán
cb5a2adbc1 move styles to lib 2022-12-13 13:46:19 +01:00
Balázs Orbán
1d9e5918f4 move init to lib 2022-12-13 13:42:43 +01:00
Balázs Orbán
d96947c277 move routes to lib 2022-12-13 13:42:12 +01:00
Balázs Orbán
ffee34df90 move pages/index to lib 2022-12-13 13:41:14 +01:00
Balázs Orbán
c229183d2d move errors to lib 2022-12-13 13:40:40 +01:00
Balázs Orbán
90df63efea move pages to lib 2022-12-13 13:40:14 +01:00
Balázs Orbán
f2d193b852 temporary Headers fix 2022-12-13 13:30:57 +01:00
Balázs Orbán
b2e66cc961 default env secret to AUTH_SECRET 2022-12-13 13:30:33 +01:00
Balázs Orbán
f231016913 generate declaration map 2022-12-13 13:14:35 +01:00
Balázs Orbán
e9f0828c97 pass through OAuth client options 2022-12-13 12:36:55 +01:00
Balázs Orbán
9d0c138b2d remove todo comments 2022-12-13 12:28:45 +01:00
Balázs Orbán
e651df57a0 make secret required in dev 2022-12-13 12:19:47 +01:00
Balázs Orbán
5d15ac53dd remove uuid 2022-12-13 12:08:50 +01:00
Thang Vu
afda10015e feat: extract type to core and reuse in sveltekit 2022-12-13 17:49:04 +07:00
Thang Vu
1c9d7fe955 Some more refactoring 2022-12-13 17:02:40 +07:00
Thang Vu
42ba2d1b9a upgrade sveltekit auth to latest 2022-12-13 16:56:09 +07:00
Thang Vu
801509e190 upgrade playground to latest 2022-12-13 16:55:43 +07:00
Thang Vu
29d8965e11 clean up sveltekit auth handler 2022-12-13 00:02:25 +07:00
Thang Vu
519bf6e5b0 merge 2022-12-12 22:11:56 +07:00
Balázs Orbán
e5bfbed2c4 Sync (#2)
* fix(core): properly construct url (#5984)

* chore(release): bump package version(s) [skip ci]

* fix(core): add protocol if missing

* fix(core): throw error if no action can be determined

* test(core): fix test

* chore(release): bump package version(s) [skip ci]

* chore(docs): add new tutorial (#5604)

Co-authored-by: Nico Domino <yo@ndo.dev>

* fix(core): handle `Request` -> `Response` regressions  (#5991)

* fix(next): don't override `Content-Type` by `unstable_getServerSession`

* fix(core): handle `,` while setting `set-cookie`

* chore(release): bump package version(s) [skip ci]

* fix(sequelize): increase sequelize `id_token` column length (#5929)

Co-authored-by: Nico Domino <yo@ndo.dev>

* fix(core): correct status code when returning redirects (#6004)

* fix(core): correctly set status when returning redirect

* update tests

* forward other headers

* update test

* remove default 200 status

* fix(core): host detection/NEXTAUTH_URL (#6007)

* rename `host` to `origin` internally

* rename `userOptions` to `authOptions` internally

* use object for `headers` internally

* default `method` to GET

* simplify `unstable_getServerSession`

* allow optional headers

* revert middleware

* wip getURL

* revert host detection

* use old `detectHost`

* fix/add some tests wip

* move more to core, refactor getURL

* better type auth actions

* fix custom path support (w/ api/auth)

* add `getURL` tests

* fix email tests

* fix assert tests

* custom base without api/auth, with trailing slash

* remove parseUrl from assert.ts

* return 400 when wrong url

* fix tests

* refactor

* fix protocol in dev

* fix tests

* fix custom url handling

* add todo comments

* chore(release): bump package version(s) [skip ci]

* update lock file

* fix(next): correctly bundle next-auth/middleware
fixes #6025

* fix(core): preserve incoming set cookies (#6029)

* fix(core): preserve `set-cookie` by the user

* add test

* improve req/res mocking

* refactor

* fix comment typo

* chore(release): bump package version(s) [skip ci]

* make logos optional

* sync with `next-auth`

* clean up `next-auth/edge`

* sync

Co-authored-by: Balázs Orbán <balazsorban44@users.noreply.github.com>
Co-authored-by: Thomas Desmond <24610108+thomas-desmond@users.noreply.github.com>
Co-authored-by: Nico Domino <yo@ndo.dev>
Co-authored-by: Cyril Perraud <perraud.cyril@gmail.com>
2022-12-12 21:57:24 +07:00
Balázs Orbán
73026a4cad sync 2022-12-12 15:51:31 +01:00
Balázs Orbán
0469fc65fb clean up next-auth/edge 2022-12-12 15:29:04 +01:00
Balázs Orbán
92cfb9199e sync with next-auth 2022-12-12 15:28:39 +01:00
Balázs Orbán
fa864e1753 make logos optional 2022-12-12 15:26:07 +01:00
Balázs Orbán
67c525b5b5 Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-12 14:54:49 +01:00
Balázs Orbán
0b8d3fdfc6 update lock file 2022-12-11 16:06:53 +01:00
Balázs Orbán
7f3a6ca36c Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-11 16:04:41 +01:00
Balázs Orbán
7444ab39c8 Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-08 05:25:27 +01:00
Thang Vu
ac0dbae10a fix AuthHandler, add getServerSession 2022-12-08 11:17:52 +07:00
Balázs Orbán
59d6385d5e Merge pull request #1 from nextauthjs/feat/oauth4webapi-balazs 2022-12-08 03:35:37 +01:00
Balázs Orbán
187d38b4c1 fix CSS 2022-12-08 03:33:29 +01:00
Balázs Orbán
860c8b50b2 target es2020 2022-12-08 03:10:51 +01:00
Balázs Orbán
563395928d fix providers 2022-12-08 03:10:42 +01:00
Balázs Orbán
5945d9bc07 refactor providers, test facebook 2022-12-08 02:38:24 +01:00
Balázs Orbán
5c96c8fe68 deprecate OAuth 1, simplify internals, improve defaults 2022-12-08 02:37:49 +01:00
Balázs Orbán
104f9445f6 fix logout 2022-12-08 02:34:51 +01:00
Balázs Orbán
df616605f0 output ESM 2022-12-08 02:34:22 +01:00
Balázs Orbán
c3932f1f7b Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-08 00:12:58 +01:00
Balázs Orbán
598b3efc07 revert Logo component 2022-12-07 18:14:29 +01:00
Balázs Orbán
2730249e30 wip fix css 2022-12-07 18:00:02 +01:00
Thang Vu
57facccd8f feat: add sveltekit auth 2022-12-07 23:46:01 +07:00
Balázs Orbán
8299b977f9 move redirect logic to core 2022-12-07 17:41:04 +01:00
Balázs Orbán
99abfbecfc revert 2022-12-07 12:25:20 +01:00
Balázs Orbán
808d9a27e5 temprarily remove duplicate logos 2022-12-07 12:19:09 +01:00
Balázs Orbán
cc098bd73a remove openid-client 2022-12-06 17:47:21 +01:00
Balázs Orbán
166d4a8f77 support OIDC 2022-12-06 17:03:54 +01:00
Balázs Orbán
9d079a5fcb wip core 2022-12-06 15:47:04 +01:00
Balázs Orbán
7d8f468a02 Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-05 13:39:04 +01:00
Balázs Orbán
40f11edd01 Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-05 13:34:59 +01:00
Balázs Orbán
9f3e33eef2 refactor: more renames 2022-12-05 13:32:37 +01:00
Balázs Orbán
5a22790673 fix import 2022-12-03 16:05:16 +01:00
Balázs Orbán
1ee62b6513 Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-03 15:52:57 +01:00
Balázs Orbán
b0fb1748c5 Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-03 15:42:44 +01:00
Balázs Orbán
6b46f373bd chore: upgrade dep 2022-12-03 15:37:38 +01:00
Balázs Orbán
b0b993988b Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-03 15:34:37 +01:00
Balázs Orbán
9aaa058e2f Merge branch 'main' into feat/oauth4webapi-balazs 2022-12-03 15:00:40 +01:00
Balázs Orbán
7a47d68f5e fix tests 2022-10-10 05:35:43 +02:00
Balázs Orbán
119de7eeb2 fix eslint 2022-10-10 05:15:36 +02:00
Balázs Orbán
697443df7a send header instead of body to indicate redirect response 2022-10-10 05:07:30 +02:00
Balázs Orbán
a063349533 refactor 2022-10-10 04:50:34 +02:00
Balázs Orbán
68d53876ea add next-auth/web 2022-10-10 04:49:42 +02:00
Balázs Orbán
79d6299474 refactor crypto usage
In Node.js, inject `globalThis.crypto` instead of import
2022-10-10 04:47:12 +02:00
Balázs Orbán
7b46d1a3a5 simplify types 2022-10-10 04:38:10 +02:00
Balázs Orbán
49cfcf1f5e Merge remote-tracking branch 'origin/chore/core-request-response' into feat/oauth4webapi-balazs 2022-10-10 02:47:33 +02:00
Balázs Orbán
8041a59490 reduce file changes in the PR 2022-10-10 02:46:48 +02:00
Balázs Orbán
b2de56c9e6 remove new-line 2022-10-10 02:30:06 +02:00
Balázs Orbán
6d3e4af8fb Merge remote-tracking branch 'origin/chore/core-request-response' into feat/oauth4webapi-balazs 2022-10-10 02:13:46 +02:00
Balázs Orbán
6843007040 Merge branch 'main' into chore/core-request-response 2022-10-10 02:12:18 +02:00
Balázs Orbán
4a2c89d7a6 Merge remote-tracking branch 'origin/chore/core-request-response' into feat/oauth4webapi-balazs 2022-10-10 02:02:37 +02:00
Balázs Orbán
1bed1182a1 fix neo4j build 2022-10-10 02:01:57 +02:00
Balázs Orbán
0e635bd068 Merge remote-tracking branch 'origin/chore/core-request-response' into feat/oauth4webapi-balazs 2022-10-10 01:58:45 +02:00
Balázs Orbán
5d6643b6dd Merge branch 'main' into chore/core-request-response 2022-10-10 00:37:37 +02:00
Balázs Orbán
0c71f26ec1 fix type 2022-10-09 02:14:28 +02:00
Balázs Orbán
dbf42936e4 add web-compatible authorization URL handling 2022-10-09 02:06:14 +02:00
Balázs Orbán
9466f65032 mark clientId as always internally, fix comments 2022-10-09 02:04:05 +02:00
Balázs Orbán
cbd7f18b3a allow internal redirect to be URL 2022-10-09 01:51:34 +02:00
Balázs Orbán
9bea47381f assert if both endpoint and issuer config is missing 2022-10-09 01:48:15 +02:00
Balázs Orbán
b8ed7358c9 simplify internal endpoint config
Instead of passing url and params around as a string and an object,
we parse them into a `URL` instance.
2022-10-09 01:47:44 +02:00
Balázs Orbán
0723747523 don't import all adapters by default in dev 2022-10-09 01:37:26 +02:00
Balázs Orbán
bc314ef7e8 type and default import on one line 2022-10-09 01:36:05 +02:00
Balázs Orbán
3d1453682d upgrade/add dependencies 2022-10-09 01:33:43 +02:00
Balázs Orbán
57a7d3f4f8 remove patch 2022-10-07 13:32:24 +02:00
Balázs Orbán
195822ce3d fix test 2022-10-07 01:32:33 +02:00
Balázs Orbán
1a2e752c13 fix tests, using Node 18 as runtime 2022-10-07 01:00:25 +02:00
Balázs Orbán
bd4d78ba77 chore: add @edge-runtime/jest-environment 2022-10-07 00:08:20 +02:00
Balázs Orbán
8f7288a72b Merge branch 'main' into chore/core-request-response 2022-10-06 23:48:30 +02:00
Balázs Orbán
b41bdeb787 refactor next-auth/next 2022-10-05 04:10:42 +02:00
Balázs Orbán
415d299698 refactor getBody 2022-10-05 04:03:32 +02:00
Balázs Orbán
07ab4f8cd4 fall back host to localhost 2022-10-05 04:03:19 +02:00
Balázs Orbán
b63e84334e don't export internal handler 2022-10-05 04:03:03 +02:00
Balázs Orbán
1903e3c616 return session in protected api route example 2022-10-05 04:02:51 +02:00
Balázs Orbán
eb77e23f37 Merge branch 'main' into chore/core-request-response 2022-10-05 02:43:07 +02:00
Balázs Orbán
63cdea4506 remove workaround for middleware return type 2022-08-12 16:20:55 +02:00
Balázs Orbán
2cf11bbc71 fix tests 2022-08-12 14:54:04 +02:00
Balázs Orbán
a5cd972a55 revert 2022-08-12 14:50:31 +02:00
Balázs Orbán
bc9ddaeaa2 make linter happy 2022-08-12 14:49:28 +02:00
Balázs Orbán
fe9c6a5d3f use Request/Response in next-auth/next 2022-08-12 14:20:41 +02:00
Balázs Orbán
db6b1c9e96 implement body reader 2022-08-12 14:20:21 +02:00
Balázs Orbán
b9330038e5 upgrade Next.js 2022-08-12 13:45:24 +02:00
Balázs Orbán
b274e98f8b simplify 2022-08-11 12:55:29 +02:00
Balázs Orbán
c73694801f refactor 2022-08-11 12:53:03 +02:00
Balázs Orbán
504f384352 rename ts types 2022-08-11 12:52:42 +02:00
Balázs Orbán
8c21589518 bump Next.js 2022-08-11 12:09:59 +02:00
Balázs Orbán
12683017c1 Merge branch 'main' into chore/core-request-response 2022-08-11 11:56:47 +02:00
Balázs Orbán
e428b17b99 WIP use Request and Response for core 2022-06-26 21:24:49 +02:00
44 changed files with 2145 additions and 2677 deletions

View File

@@ -18,6 +18,7 @@ module.exports = {
parserOptions: {
project: [
path.resolve(__dirname, "./packages/**/tsconfig.eslint.json"),
path.resolve(__dirname, "./packages/frameworks/**/tsconfig.json"),
path.resolve(__dirname, "./apps/**/tsconfig.json"),
],
},

1
.gitignore vendored
View File

@@ -34,6 +34,7 @@ packages/next-auth/utils
packages/next-auth/core
packages/next-auth/jwt
packages/next-auth/react
packages/next-auth/web
packages/next-auth/adapters.d.ts
packages/next-auth/adapters.js
packages/next-auth/index.d.ts

View File

@@ -0,0 +1,13 @@
.DS_Store
node_modules
/build
/.svelte-kit
/package
.env
.env.*
!.env.example
# Ignore files for PNPM, NPM and YARN
pnpm-lock.yaml
package-lock.json
yarn.lock

View File

@@ -1,24 +1,20 @@
module.exports = {
root: true,
parser: "@typescript-eslint/parser",
extends: [
"eslint:recommended",
"plugin:@typescript-eslint/recommended",
"prettier",
],
plugins: ["svelte3", "@typescript-eslint"],
ignorePatterns: ["*.cjs", "build/**/*"],
overrides: [{ files: ["*.svelte"], processor: "svelte3/svelte3" }],
settings: {
"svelte3/typescript": () => require("typescript"),
},
parserOptions: {
sourceType: "module",
ecmaVersion: 2020,
},
env: {
browser: true,
es2017: true,
node: true,
},
}
root: true,
parser: '@typescript-eslint/parser',
extends: ['eslint:recommended', 'plugin:@typescript-eslint/recommended', 'prettier'],
plugins: ['svelte3', '@typescript-eslint'],
ignorePatterns: ['*.cjs'],
overrides: [{ files: ['*.svelte'], processor: 'svelte3/svelte3' }],
settings: {
'svelte3/typescript': () => require('typescript')
},
parserOptions: {
sourceType: 'module',
ecmaVersion: 2020
},
env: {
browser: true,
es2017: true,
node: true
}
};

View File

@@ -6,3 +6,7 @@ node_modules
.env
.env.*
!.env.example
.vercel
.output
vite.config.js.timestamp-*
vite.config.ts.timestamp-*

View File

@@ -0,0 +1,13 @@
.DS_Store
node_modules
/build
/.svelte-kit
/package
.env
.env.*
!.env.example
# Ignore files for PNPM, NPM and YARN
pnpm-lock.yaml
package-lock.json
yarn.lock

View File

@@ -0,0 +1,9 @@
{
"useTabs": true,
"singleQuote": true,
"trailingComma": "none",
"printWidth": 100,
"plugins": ["prettier-plugin-svelte"],
"pluginSearchDirs": ["."],
"overrides": [{ "files": "*.svelte", "options": { "parser": "svelte" } }]
}

View File

@@ -1,43 +1,39 @@
{
"name": "sveltekit-nextauth",
"name": "sveltekit-nextauth",
"private": true,
"version": "0.0.1",
"scripts": {
"dev": "vite dev",
"build": "vite build",
"preview": "vite preview",
"start": "HOST=127.0.0.1 PORT=5173 ORIGIN=http://localhost:5173 node ./build",
"check": "svelte-kit sync && svelte-check --tsconfig ./tsconfig.json",
"check:watch": "svelte-kit sync && svelte-check --tsconfig ./tsconfig.json --watch",
"lint": "prettier --check . && eslint .",
"format": "prettier --write ."
},
"devDependencies": {
"@sveltejs/adapter-auto": "^1.0.0-next.80",
"@sveltejs/adapter-node": "1.0.0-next.96",
"@sveltejs/kit": "1.0.0-next.511",
"@types/cookie": "^0.5.1",
"@typescript-eslint/eslint-plugin": "^5.35.1",
"@typescript-eslint/parser": "^5.35.1",
"eslint": "^8.22.0",
"eslint-config-prettier": "^8.5.0",
"eslint-plugin-svelte3": "^4.0.0",
"prettier": "^2.7.1",
"prettier-plugin-svelte": "^2.7.0",
"svelte": "^3.49.0",
"svelte-check": "^2.8.1",
"svelte-preprocess": "^4.10.7",
"tslib": "^2.4.0",
"typescript": "~4.8.2",
"vite": "^3.1.0"
},
"type": "module",
"version": "0.0.1",
"scripts": {
"dev": "vite dev",
"build": "vite build",
"preview": "vite preview",
"check": "svelte-kit sync && svelte-check --tsconfig ./tsconfig.json",
"check:watch": "svelte-kit sync && svelte-check --tsconfig ./tsconfig.json --watch",
"lint": "prettier --plugin-search-dir . --check . && eslint .",
"format": "prettier --plugin-search-dir . --write ."
},
"devDependencies": {
"@fontsource/fira-mono": "^4.5.10",
"@neoconfetti/svelte": "^1.0.0",
"@sveltejs/adapter-auto": "next",
"@sveltejs/kit": "next",
"@types/cookie": "^0.5.1",
"@typescript-eslint/eslint-plugin": "^5.45.0",
"@typescript-eslint/parser": "^5.45.0",
"eslint": "^8.28.0",
"eslint-config-prettier": "^8.5.0",
"eslint-plugin-svelte3": "^4.0.0",
"prettier": "^2.8.0",
"prettier-plugin-svelte": "^2.8.1",
"svelte": "^3.54.0",
"svelte-check": "^2.9.2",
"tslib": "^2.4.1",
"typescript": "^4.9.3",
"vite": "^4.0.0"
},
"dependencies": {
"cookie": "0.5.0",
"next-auth": "latest"
"next-auth-core": "workspace:^0.0.1",
"next-auth-sveltekit": "workspace:^0.0.1"
},
"prettier": {
"semi": false,
"singleQuote": false
}
"type": "module"
}

View File

@@ -1,4 +1,5 @@
/// <reference types="@sveltejs/kit" />
/// <reference types="next-auth-sveltekit" />
import type {
User as NextAuthUser,
Session as NextAuthSession,
@@ -18,7 +19,8 @@ interface AppSession extends NextAuthSession {
declare global {
declare namespace App {
interface Locals {
session: AppSession
// session: AppSession
getSession: () => Promise<AppSession>
}
interface Platform {}

View File

@@ -1,12 +1,15 @@
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8" />
<link rel="icon" href="%sveltekit.assets%/favicon.png" />
<meta name="viewport" content="width=device-width" />
%sveltekit.head%
</head>
<body>
<div>%sveltekit.body%</div>
</body>
</html>
<head>
<meta charset="utf-8" />
<link rel="icon" href="%sveltekit.assets%/favicon.ico" />
<meta name="viewport" content="width=device-width" />
%sveltekit.head%
</head>
<body>
<div>%sveltekit.body%</div>
</body>
</html>

View File

@@ -1,14 +1,25 @@
import type { Handle } from "@sveltejs/kit"
import { getServerSession, options as nextAuthOptions } from "$lib/next-auth"
import SvelteKitAuth from "next-auth-sveltekit"
import GitHub from 'next-auth-core/providers/github';
import Google from 'next-auth-core/providers/google';
import Credentials from 'next-auth-core/providers/credentials';
import {
GITHUB_CLIENT_ID,
GITHUB_CLIENT_SECRET,
GOOGLE_CLIENT_ID,
GOOGLE_CLIENT_SECRET,
} from "$env/static/private"
export const handle: Handle = async function handle({
event,
resolve,
}): Promise<Response> {
const session = await getServerSession(event.request, nextAuthOptions)
if (session) {
event.locals.session = session
}
return resolve(event)
}
export const handle = SvelteKitAuth({
providers: [
GitHub({ clientId: GITHUB_CLIENT_ID, clientSecret: GITHUB_CLIENT_SECRET }),
Google({ clientId: GOOGLE_CLIENT_ID, clientSecret: GOOGLE_CLIENT_SECRET }),
Credentials({
credentials: { password: { label: "Password", type: "password" } },
async authorize(credentials) {
if (credentials.password !== "pw") return null
return { name: "Fill Murray", email: "bill@fillmurray.com", image: "https://www.fillmurray.com/64/64", id: "1", foo: "" }
},
}),
],
debug: true,
});

View File

@@ -0,0 +1,12 @@
<script lang="ts">
export let provider: any;
</script>
<form action={provider.signinUrl} method="POST">
{#if provider.callbackUrl}
<input type="hidden" name="callbackUrl" value={provider.callbackUrl} />
{/if}
<button type="submit" class="button">
<slot>Sign in with {provider.name}</slot>
</button>
</form>

View File

@@ -1,144 +0,0 @@
import type { ServerLoadEvent } from "@sveltejs/kit"
import type { RequestInternal } from "next-auth"
import type { NextAuthAction, NextAuthOptions } from "next-auth/core/types"
import type { OutgoingResponse as NextAuthResponse } from "next-auth/core"
import { NextAuthHandler } from "next-auth/core"
import GithubProvider from "next-auth/providers/github"
import cookie from "cookie"
import {
GITHUB_CLIENT_ID,
GITHUB_CLIENT_SECRET,
NEXTAUTH_SECRET,
} from "$env/static/private"
import { PUBLIC_NEXTAUTH_URL } from "$env/static/public"
// @ts-expect-error import is exported on .default during SSR
const github = GithubProvider?.default || GithubProvider
export const options: NextAuthOptions = {
providers: [
github({
clientId: GITHUB_CLIENT_ID,
clientSecret: GITHUB_CLIENT_SECRET,
}),
],
}
const toSvelteKitResponse = async <
T extends string | any[] | Record<string, any>
>(
request: Request,
nextAuthResponse: NextAuthResponse<T>
): Promise<Response> => {
const { cookies, redirect } = nextAuthResponse
const headers = new Headers()
for (const header of nextAuthResponse?.headers || []) {
// pass headers along from next-auth
headers.set(header.key, header.value)
}
// set-cookie header
if (cookies?.length) {
headers.set(
"set-cookie",
cookies
?.map((item) => cookie.serialize(item.name, item.value, item.options))
.join(",") as string
)
}
let body = undefined
let status = nextAuthResponse.status || 200
if (redirect) {
let formData: FormData | null = null
try {
formData = await request.formData()
} catch {
// no formData passed
}
const { json } = Object.fromEntries(formData ?? [])
if (json !== "true") {
status = 302
headers.set("Location", redirect)
} else {
body = { url: redirect }
}
} else {
body = nextAuthResponse.body
}
// @ts-expect-error - body is a known HTML document or JSON object
return new Response(body, {
status,
headers,
})
}
const SKNextAuthHandler = async (
{ request, url, params }: ServerLoadEvent,
options: NextAuthOptions
): Promise<Response> => {
const [action, provider] = params.nextauth!.split("/")
let body: FormData | undefined
try {
body = await request.formData()
} catch {
// no formData passed
}
options.secret = NEXTAUTH_SECRET
const req: RequestInternal = {
host: PUBLIC_NEXTAUTH_URL,
body: Object.fromEntries(body ?? []),
query: Object.fromEntries(url.searchParams),
headers: request.headers,
method: request.method,
cookies: cookie.parse(request.headers.get("cookie") || ""),
action: action as NextAuthAction,
providerId: provider,
error: provider,
}
const response = await NextAuthHandler({
req,
options,
})
return toSvelteKitResponse(request, response)
}
export const getServerSession = async (
request: Request,
options: NextAuthOptions
): Promise<App.Session | null> => {
options.secret = NEXTAUTH_SECRET
const session = await NextAuthHandler<App.Session>({
req: {
host: PUBLIC_NEXTAUTH_URL,
action: "session",
method: "GET",
cookies: cookie.parse(request.headers.get("cookie") || ""),
headers: request.headers,
},
options,
})
const { body } = session
if (body && Object.keys(body).length) {
return body as App.Session
}
return null
}
export const NextAuth = (
options: NextAuthOptions
): {
GET: (event: ServerLoadEvent) => Promise<unknown>
POST: (event: ServerLoadEvent) => Promise<unknown>
} => ({
GET: (event) => SKNextAuthHandler(event, options),
POST: (event) => SKNextAuthHandler(event, options),
})

View File

@@ -1,7 +1,14 @@
import type { LayoutServerLoad } from "./$types"
export const load: LayoutServerLoad = ({ locals }) => {
export const load: LayoutServerLoad = (event) => {
console.log('layout server load', event.locals.getSession)
let session
if (event.locals.getSession)
{
session = event.locals.getSession()
}
return {
session: locals.session,
session,
}
}

View File

@@ -1,151 +1,144 @@
<script lang="ts">
import { page } from "$app/stores"
import { page } from '$app/stores';
</script>
<div>
<header>
<div class="signedInStatus">
<p class="nojs-show loaded">
{#if Object.keys($page.data.session || {}).length}
{#if $page.data.session.user.image}
<span
style="background-image: url('{$page.data.session.user.image}')"
class="avatar"
/>
{/if}
<span class="signedInText">
<small>Signed in as</small><br />
<strong
>{$page.data.session.user.email ||
$page.data.session.user.name}</strong
>
</span>
<a href="/api/auth/signout" class="button">Sign out</a>
{:else}
<span class="notSignedInText">You are not signed in</span>
<a href="/api/auth/signin" class="buttonPrimary">Sign in</a>
{/if}
</p>
</div>
<nav>
<ul class="navItems">
<li class="navItem"><a href="/">Home</a></li>
<li class="navItem"><a href="/protected">Protected</a></li>
</ul>
</nav>
</header>
<slot />
<header>
<div class="signedInStatus">
<p class="nojs-show loaded">
{#if Object.keys($page.data.session || {}).length}
{#if $page.data.session.user.image}
<span style="background-image: url('{$page.data.session.user.image}')" class="avatar" />
{/if}
<span class="signedInText">
<small>Signed in as</small><br />
<strong>{$page.data.session.user.email || $page.data.session.user.name}</strong>
</span>
<a href="/auth/signout" class="button">Sign out</a>
{:else}
<span class="notSignedInText">You are not signed in</span>
<a href="/auth/signin" class="buttonPrimary">Sign in</a>
{/if}
</p>
</div>
<nav>
<ul class="navItems">
<li class="navItem"><a href="/">Home</a></li>
<li class="navItem"><a href="/protected">Protected</a></li>
</ul>
</nav>
</header>
<slot />
</div>
<style>
:global(body) {
font-family: ui-sans-serif, system-ui, -apple-system, BlinkMacSystemFont,
"Segoe UI", Roboto, "Helvetica Neue", Arial, "Noto Sans", sans-serif,
"Apple Color Emoji", "Segoe UI Emoji", "Segoe UI Symbol",
"Noto Color Emoji";
padding: 0 1rem 1rem 1rem;
max-width: 680px;
margin: 0 auto;
background: #fff;
color: #333;
}
:global(li),
:global(p) {
line-height: 1.5rem;
}
:global(a) {
font-weight: 500;
}
:global(hr) {
border: 1px solid #ddd;
}
:global(iframe) {
background: #ccc;
border: 1px solid #ccc;
height: 10rem;
width: 100%;
border-radius: 0.5rem;
filter: invert(1);
}
:global(body) {
font-family: ui-sans-serif, system-ui, -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto,
'Helvetica Neue', Arial, 'Noto Sans', sans-serif, 'Apple Color Emoji', 'Segoe UI Emoji',
'Segoe UI Symbol', 'Noto Color Emoji';
padding: 0 1rem 1rem 1rem;
max-width: 680px;
margin: 0 auto;
background: #fff;
color: #333;
}
:global(li),
:global(p) {
line-height: 1.5rem;
}
:global(a) {
font-weight: 500;
}
:global(hr) {
border: 1px solid #ddd;
}
:global(iframe) {
background: #ccc;
border: 1px solid #ccc;
height: 10rem;
width: 100%;
border-radius: 0.5rem;
filter: invert(1);
}
.nojs-show {
opacity: 1;
top: 0;
}
.signedInStatus {
display: block;
min-height: 4rem;
width: 100%;
}
.loaded {
position: relative;
top: 0;
opacity: 1;
overflow: hidden;
border-radius: 0 0 0.6rem 0.6rem;
padding: 0.6rem 1rem;
margin: 0;
background-color: rgba(0, 0, 0, 0.05);
transition: all 0.2s ease-in;
}
.signedInText,
.notSignedInText {
position: absolute;
padding-top: 0.8rem;
left: 1rem;
right: 6.5rem;
white-space: nowrap;
text-overflow: ellipsis;
overflow: hidden;
display: inherit;
z-index: 1;
line-height: 1.3rem;
}
.signedInText {
padding-top: 0rem;
left: 4.6rem;
}
.avatar {
border-radius: 2rem;
float: left;
height: 2.8rem;
width: 2.8rem;
background-color: white;
background-size: cover;
background-repeat: no-repeat;
}
.button,
.buttonPrimary {
float: right;
margin-right: -0.4rem;
font-weight: 500;
border-radius: 0.3rem;
cursor: pointer;
font-size: 1rem;
line-height: 1.4rem;
padding: 0.7rem 0.8rem;
position: relative;
z-index: 10;
background-color: transparent;
color: #555;
}
.buttonPrimary {
background-color: #346df1;
border-color: #346df1;
color: #fff;
text-decoration: none;
padding: 0.7rem 1.4rem;
}
.buttonPrimary:hover {
box-shadow: inset 0 0 5rem rgba(0, 0, 0, 0.2);
}
.navItems {
margin-bottom: 2rem;
padding: 0;
list-style: none;
}
.navItem {
display: inline-block;
margin-right: 1rem;
}
.nojs-show {
opacity: 1;
top: 0;
}
.signedInStatus {
display: block;
min-height: 4rem;
width: 100%;
}
.loaded {
position: relative;
top: 0;
opacity: 1;
overflow: hidden;
border-radius: 0 0 0.6rem 0.6rem;
padding: 0.6rem 1rem;
margin: 0;
background-color: rgba(0, 0, 0, 0.05);
transition: all 0.2s ease-in;
}
.signedInText,
.notSignedInText {
position: absolute;
padding-top: 0.8rem;
left: 1rem;
right: 6.5rem;
white-space: nowrap;
text-overflow: ellipsis;
overflow: hidden;
display: inherit;
z-index: 1;
line-height: 1.3rem;
}
.signedInText {
padding-top: 0rem;
left: 4.6rem;
}
.avatar {
border-radius: 2rem;
float: left;
height: 2.8rem;
width: 2.8rem;
background-color: white;
background-size: cover;
background-repeat: no-repeat;
}
.button,
.buttonPrimary {
float: right;
margin-right: -0.4rem;
font-weight: 500;
border-radius: 0.3rem;
cursor: pointer;
font-size: 1rem;
line-height: 1.4rem;
padding: 0.7rem 0.8rem;
position: relative;
z-index: 10;
background-color: transparent;
color: #555;
}
.buttonPrimary {
background-color: #346df1;
border-color: #346df1;
color: #fff;
text-decoration: none;
padding: 0.7rem 1.4rem;
}
.buttonPrimary:hover {
box-shadow: inset 0 0 5rem rgba(0, 0, 0, 0.2);
}
.navItems {
margin-bottom: 2rem;
padding: 0;
list-style: none;
}
.navItem {
display: inline-block;
margin-right: 1rem;
}
</style>

View File

@@ -1,7 +1,25 @@
<script>
import { signIn, signOut } from 'next-auth-sveltekit/client';
import { page } from '$app/stores';
</script>
<h1>SvelteKit + NextAuth.js Example</h1>
<p>
This is an example site to demonstrate how to use <a
href="https://kit.svelte.dev/">SvelteKit</a
>
with <a href="https://next-auth.js.org">NextAuth.js</a> for authentication.
This is an example site to demonstrate how to use <a href="https://kit.svelte.dev/">SvelteKit</a>
with <a href="https://next-auth.js.org">NextAuth.js</a> for authentication.
{#if Object.keys($page.data.session || {}).length}
{#if $page.data.session.user.image}
<span style="background-image: url('{$page.data.session.user.image}')" class="avatar" />
{/if}
<span class="signedInText">
<small>Signed in as</small><br />
<strong>{$page.data.session.user.email || $page.data.session.user.name}</strong>
</span>
<button on:click={() => signOut()} class="button">Sign out</button>
{:else}
<span class="notSignedInText">You are not signed in</span>
<button on:click={() => signIn('github')}>Sign In with GitHub</button>
<button on:click={() => signIn('credentials', { redirect: false })}>Sign In credentials</button>
{/if}
</p>

View File

@@ -1,3 +0,0 @@
import { NextAuth, options } from "$lib/next-auth"
export const { GET, POST } = NextAuth(options)

View File

Before

Width:  |  Height:  |  Size: 1.5 KiB

After

Width:  |  Height:  |  Size: 1.5 KiB

View File

@@ -1,14 +1,15 @@
import adapter from "@sveltejs/adapter-node" // or use https://github.com/sveltejs/kit/tree/master/packages/adapter-auto
import preprocess from "svelte-preprocess"
import adapter from '@sveltejs/adapter-auto';
import { vitePreprocess } from '@sveltejs/kit/vite';
/** @type {import('@sveltejs/kit').Config} */
const config = {
// Consult https://github.com/sveltejs/svelte-preprocess
// for more information about preprocessors
preprocess: preprocess(),
kit: {
adapter: adapter(),
},
}
// Consult https://kit.svelte.dev/docs/integrations#preprocessors
// for more information about preprocessors
preprocess: vitePreprocess(),
export default config
kit: {
adapter: adapter()
}
};
export default config;

View File

@@ -1,17 +1,17 @@
{
"extends": "./.svelte-kit/tsconfig.json",
"compilerOptions": {
"allowJs": true,
"checkJs": true,
"esModuleInterop": true,
"forceConsistentCasingInFileNames": true,
"resolveJsonModule": true,
"skipLibCheck": true,
"sourceMap": true,
"strict": true
}
// Path aliases are handled by https://kit.svelte.dev/docs/configuration#alias
//
// If you want to overwrite includes/excludes, make sure to copy over the relevant includes/excludes
// from the referenced tsconfig.json - TypeScript does not merge them in
"extends": "./.svelte-kit/tsconfig.json",
"compilerOptions": {
"allowJs": true,
"checkJs": true,
"esModuleInterop": true,
"forceConsistentCasingInFileNames": true,
"resolveJsonModule": true,
"skipLibCheck": true,
"sourceMap": true,
"strict": true
}
// Path aliases are handled by https://kit.svelte.dev/docs/configuration#alias
//
// If you want to overwrite includes/excludes, make sure to copy over the relevant includes/excludes
// from the referenced tsconfig.json - TypeScript does not merge them in
}

View File

@@ -0,0 +1,8 @@
import { sveltekit } from '@sveltejs/kit/vite';
/** @type {import('vite').UserConfig} */
const config = {
plugins: [sveltekit()]
};
export default config;

View File

@@ -1,8 +0,0 @@
import { sveltekit } from "@sveltejs/kit/vite"
import type { UserConfig } from "vite"
const config: UserConfig = {
plugins: [sveltekit()],
}
export default config

File diff suppressed because it is too large Load Diff

View File

@@ -11,6 +11,7 @@
"clean": "turbo run clean --no-cache",
"dev:db": "turbo run dev --parallel --continue --filter=next-auth-app...",
"dev": "turbo run dev --parallel --continue --filter=next-auth-app... --filter=!./packages/adapter-*",
"dev:kit": "turbo run dev --parallel --continue --filter=sveltekit-nextauth...",
"dev:docs": "turbo run dev --filter=next-auth-docs",
"email": "cd apps/dev && pnpm email",
"release": "release",
@@ -70,5 +71,10 @@
"type": "opencollective",
"url": "https://opencollective.com/nextauth"
}
]
],
"pnpm": {
"overrides": {
"undici": "5.11.0"
}
}
}

5
packages/core/.gitignore vendored Normal file
View File

@@ -0,0 +1,5 @@
adapters.*
index.*
jwt
lib
providers

View File

@@ -576,3 +576,37 @@ export interface InternalOptions<
cookies: CookiesOptions
callbackUrl: string
}
// Client types
/**
* Util type that matches some strings literally, but allows any other string as well.
* @source https://github.com/microsoft/TypeScript/issues/29729#issuecomment-832522611
*/
export type LiteralUnion<T extends U, U = string> =
| T
| (U & Record<never, never>)
export interface SignInOptions extends Record<string, unknown> {
/**
* Specify to which URL the user will be redirected after signing in. Defaults to the page URL the sign-in is initiated from.
*
* [Documentation](https://next-auth.js.org/getting-started/client#specifying-a-callbackurl)
*/
callbackUrl?: string
/** [Documentation](https://next-auth.js.org/getting-started/client#using-the-redirect-false-option) */
redirect?: boolean
}
/** Match `inputType` of `new URLSearchParams(inputType)` */
export type SignInAuthorizationParams =
| string
| string[][]
| Record<string, string>
| URLSearchParams
export interface SignOutParams<R extends boolean = true> {
/** [Documentation](https://next-auth.js.org/getting-started/client#specifying-a-callbackurl-1) */
callbackUrl?: string
/** [Documentation](https://next-auth.js.org/getting-started/client#using-the-redirect-false-option-1 */
redirect?: R
}

View File

@@ -0,0 +1,13 @@
.DS_Store
node_modules
/build
/.svelte-kit
/package
.env
.env.*
!.env.example
# Ignore files for PNPM, NPM and YARN
pnpm-lock.yaml
package-lock.json
yarn.lock

View File

@@ -0,0 +1,20 @@
module.exports = {
root: true,
parser: '@typescript-eslint/parser',
extends: ['eslint:recommended', 'plugin:@typescript-eslint/recommended', 'prettier'],
plugins: ['svelte3', '@typescript-eslint'],
ignorePatterns: ['*.cjs'],
overrides: [{ files: ['*.svelte'], processor: 'svelte3/svelte3' }],
settings: {
'svelte3/typescript': () => require('typescript')
},
parserOptions: {
sourceType: 'module',
ecmaVersion: 2020
},
env: {
browser: true,
es2017: true,
node: true
}
};

View File

@@ -0,0 +1,10 @@
.DS_Store
node_modules
/build
/.svelte-kit
/package
.env
.env.*
!.env.example
vite.config.js.timestamp-*
vite.config.ts.timestamp-*

View File

@@ -0,0 +1,13 @@
.DS_Store
node_modules
/build
/.svelte-kit
/package
.env
.env.*
!.env.example
# Ignore files for PNPM, NPM and YARN
pnpm-lock.yaml
package-lock.json
yarn.lock

View File

@@ -0,0 +1,9 @@
{
"useTabs": true,
"singleQuote": true,
"trailingComma": "none",
"printWidth": 100,
"plugins": ["prettier-plugin-svelte"],
"pluginSearchDirs": ["."],
"overrides": [{ "files": "*.svelte", "options": { "parser": "svelte" } }]
}

View File

@@ -0,0 +1,38 @@
# create-svelte
Everything you need to build a Svelte project, powered by [`create-svelte`](https://github.com/sveltejs/kit/tree/master/packages/create-svelte).
## Creating a project
If you're seeing this, you've probably already done this step. Congrats!
```bash
# create a new project in the current directory
npm create svelte@latest
# create a new project in my-app
npm create svelte@latest my-app
```
## Developing
Once you've created a project and installed dependencies with `npm install` (or `pnpm install` or `yarn`), start a development server:
```bash
npm run dev
# or start the server and open the app in a new browser tab
npm run dev -- --open
```
## Building
To create a production version of your app:
```bash
npm run build
```
You can preview the production build with `npm run preview`.
> To deploy your app, you may need to install an [adapter](https://kit.svelte.dev/docs/adapters) for your target environment.

View File

@@ -0,0 +1,38 @@
{
"name": "next-auth-sveltekit",
"version": "0.0.1",
"scripts": {
"dev": "svelte-package -w",
"build": "vite build",
"preview": "vite preview",
"test": "playwright test",
"check": "svelte-kit sync && svelte-check --tsconfig ./tsconfig.json",
"check:watch": "svelte-kit sync && svelte-check --tsconfig ./tsconfig.json --watch",
"test:unit": "vitest",
"lint": "prettier --plugin-search-dir . --check . && eslint .",
"format": "prettier --plugin-search-dir . --write ."
},
"devDependencies": {
"@playwright/test": "^1.28.1",
"@sveltejs/adapter-auto": "next",
"@sveltejs/kit": "next",
"@sveltejs/package": "1.0.0-next.6",
"@typescript-eslint/eslint-plugin": "^5.45.0",
"@typescript-eslint/parser": "^5.45.0",
"eslint": "^8.28.0",
"eslint-config-prettier": "^8.5.0",
"eslint-plugin-svelte3": "^4.0.0",
"prettier": "^2.8.0",
"prettier-plugin-svelte": "^2.8.1",
"svelte": "^3.54.0",
"svelte-check": "^2.9.2",
"tslib": "^2.4.1",
"typescript": "^4.9.3",
"vite": "^4.0.0",
"vitest": "^0.25.3"
},
"dependencies": {
"@auth/core": "workspace:*"
},
"type": "module"
}

View File

@@ -0,0 +1,11 @@
import type { PlaywrightTestConfig } from '@playwright/test';
const config: PlaywrightTestConfig = {
webServer: {
command: 'npm run build && npm run preview',
port: 4173
},
testDir: 'tests'
};
export default config;

View File

@@ -0,0 +1,20 @@
// eslint-disable-next-line @typescript-eslint/triple-slash-reference
/// <reference types="@sveltejs/kit" />
// See https://kit.svelte.dev/docs/types#app
// for information about these interfaces
// and what to do when importing types
declare namespace App {
// interface Error {}
interface Locals {
getSession: () => Promise<unknown>;
}
// interface PageData {}
// interface Platform {}
}
declare module '$env/static/private' {
export const AUTH_SECRET: string;
export const AUTH_TRUST_HOST: string;
export const VERCEL: string;
}

View File

@@ -0,0 +1,92 @@
import type { LiteralUnion, SignInOptions, SignInAuthorizationParams, SignOutParams } from "next-auth-core";
import type { BuiltInProviderType, RedirectableProviderType } from "next-auth-core/providers/index";
/**
* Client-side method to initiate a signin flow
* or send the user to the signin page listing all possible providers.
* Automatically adds the CSRF token to the request.
*
* [Documentation](https://next-auth.js.org/getting-started/client#signin)
*/
export async function signIn<
P extends RedirectableProviderType | undefined = undefined
>(providerId?: LiteralUnion<
P extends RedirectableProviderType
? P | BuiltInProviderType
: BuiltInProviderType
>, options?: SignInOptions, authorizationParams?: SignInAuthorizationParams) {
const { callbackUrl = window.location.href, redirect = true } = options ?? {};
// TODO: Support custom providers
const isCredentials = providerId === 'credentials';
const isEmail = providerId === 'email';
const isSupportingReturn = isCredentials || isEmail;
// TODO: Handle custom base path
const signInUrl = `/auth/${isCredentials ? 'callback' : 'signin'}/${providerId}`;
const _signInUrl = `${signInUrl}?${new URLSearchParams(authorizationParams)}`;
// TODO: Handle custom base path
// TODO: Remove this since Sveltekit offers the CSRF protection via origin check
const csrfTokenResponse = await fetch('/auth/csrf');
const { csrfToken } = await csrfTokenResponse.json();
const res = await fetch(_signInUrl, {
method: 'post',
headers: {
'Content-Type': 'application/x-www-form-urlencoded',
'X-Auth-Return-Redirect': '1'
},
// @ts-expect-error -- ignore
body: new URLSearchParams({
...options,
csrfToken,
callbackUrl
})
});
const data = await res.clone().json();
const error = new URL(data.url).searchParams.get('error');
if (redirect || !isSupportingReturn || !error) {
// TODO: Do not redirect for Credentials and Email providers by default in next major
window.location.href = data.url ?? callbackUrl;
// If url contains a hash, the browser does not reload the page. We reload manually
if (data.url.includes('#')) window.location.reload();
return;
}
return res;
}
/**
* Signs the user out, by removing the session cookie.
* Automatically adds the CSRF token to the request.
*
* [Documentation](https://next-auth.js.org/getting-started/client#signout)
*/
export async function signOut(options?: SignOutParams) {
const { callbackUrl = window.location.href } = options ?? {};
// TODO: Custom base path
// TODO: Remove this since Sveltekit offers the CSRF protection via origin check
const csrfTokenResponse = await fetch('/auth/csrf');
const { csrfToken } = await csrfTokenResponse.json();
const res = await fetch(`/auth/signout`, {
method: 'post',
headers: {
'Content-Type': 'application/x-www-form-urlencoded',
'X-Auth-Return-Redirect': '1'
},
body: new URLSearchParams({
csrfToken,
callbackUrl
})
});
const data = await res.json();
const url = data.url ?? callbackUrl;
window.location.href = url;
// If url contains a hash, the browser does not reload the page. We reload manually
if (url.includes('#')) window.location.reload();
}

View File

@@ -0,0 +1,65 @@
import type { Handle } from '@sveltejs/kit';
import { AUTH_SECRET, AUTH_TRUST_HOST, VERCEL } from '$env/static/private';
import { dev } from '$app/environment';
import { AuthHandler, type AuthOptions, type AuthAction } from '@auth/core';
export const getServerSession = async (req: Request, options: AuthOptions): Promise<unknown> => {
options.secret ??= AUTH_SECRET;
options.trustHost ??= true;
const url = new URL('/api/auth/session', req.url);
const response = await AuthHandler(new Request(url, { headers: req.headers }), options);
const { status = 200 } = response;
const data = await response.json();
if (!data || !Object.keys(data).length) return null;
if (status === 200) {
return data;
}
throw new Error(data.message);
};
interface SvelteKitAuthOptions extends AuthOptions {
/**
* @default '/auth'
*/
prefix?: string;
}
const actions: AuthAction[] = [
'providers',
'session',
'csrf',
'signin',
'signout',
'callback',
'verify-request',
'error',
'_log'
];
/** The main entry point to next-auth-sveltekit */
function SvelteKitAuth({ prefix = '/auth', ...options }: SvelteKitAuthOptions) {
options.secret ??= AUTH_SECRET;
options.trustHost ??= !!(AUTH_TRUST_HOST ?? VERCEL ?? dev);
return (({ event, resolve }) => {
const [action] = event.url.pathname.slice(prefix.length + 1).split('/');
const isAuth = actions.includes(action as AuthAction);
if (!event.locals.getSession)
event.locals.getSession = async () => getServerSession(event.request, options);
if (!event.url.pathname.startsWith(prefix + '/') || !isAuth) {
return resolve(event);
}
return AuthHandler(event.request, options);
}) satisfies Handle;
}
export default SvelteKitAuth;

View File

@@ -0,0 +1,15 @@
import adapter from '@sveltejs/adapter-auto';
import { vitePreprocess } from '@sveltejs/kit/vite';
/** @type {import('@sveltejs/kit').Config} */
const config = {
// Consult https://kit.svelte.dev/docs/integrations#preprocessors
// for more information about preprocessors
preprocess: vitePreprocess(),
kit: {
adapter: adapter()
}
};
export default config;

View File

@@ -0,0 +1,6 @@
import { expect, test } from '@playwright/test';
test('index page has expected h1', async ({ page }) => {
await page.goto('/');
expect(await page.textContent('h1')).toBe('Welcome to SvelteKit');
});

View File

@@ -0,0 +1,18 @@
{
"extends": "./.svelte-kit/tsconfig.json",
"compilerOptions": {
"allowJs": true,
"checkJs": true,
"esModuleInterop": true,
"forceConsistentCasingInFileNames": true,
"resolveJsonModule": true,
"skipLibCheck": true,
"sourceMap": true,
"strict": true,
"moduleResolution": "NodeNext"
}
// Path aliases are handled by https://kit.svelte.dev/docs/configuration#alias
//
// If you want to overwrite includes/excludes, make sure to copy over the relevant includes/excludes
// from the referenced tsconfig.json - TypeScript does not merge them in
}

View File

@@ -0,0 +1,11 @@
import { sveltekit } from '@sveltejs/kit/vite';
/** @type {import('vite').UserConfig} */
const config = {
plugins: [sveltekit()],
test: {
include: ['src/**/*.{test,spec}.{js,ts}']
}
};
export default config;

View File

@@ -2,7 +2,9 @@
"extends": "./tsconfig.json",
"compilerOptions": {
"watch": true,
"emitDeclarationOnly": false
"emitDeclarationOnly": false,
"module": "none",
"resolveJsonModule": false
},
"watchOptions": {
"excludeDirectories": [

1509
pnpm-lock.yaml generated

File diff suppressed because it is too large Load Diff

View File

@@ -2,4 +2,5 @@ packages:
- "packages/**"
- "packages/frameworks/**"
- "apps/dev"
- "apps/playground-sveltekit"
- "docs"