Install
$ agentstack add skill-butterbase-ai-butterbase-skills-journey-auth ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Journey: Auth
Stage 3c of the guided journey. Configure OAuth providers and (optionally) auth hooks.
When to use
- Dispatched by
journeywhencurrent_stage: auth. - Directly via
/butterbase-skills:journey-auth. - Skipped (annotated
(n/a)in00-state.md) if the plan has no end-user auth.
Preflight
If docs/butterbase/03-preflight.md is missing, older than 24 hours, or 00-state.md has app_id: null, invoke butterbase-skills:journey-preflight first. Wait for it to return successfully before proceeding.
Inputs
docs/butterbase/02-plan.md— the Auth section.docs/butterbase/00-state.md— forapp_id.
Procedure
- Refresh docs. Call
butterbase_docswithtopic: "auth". For provider-specific setup (Google/GitHub/Apple), also WebFetchhttps://docs.butterbase.ai/auth. Skip if cache is fresh.
- Read the Auth section of
02-plan.md. Print it back:"About to configure auth: providers=, demo_user=. Proceed?". Wait foryes. - Invoke
butterbase-skills:auth-setupvia the Skill tool, passing the Auth plan andapp_id. The wrapped skill will prompt for each provider's client ID/secret and callmanage_oauth action: configure. If a demo user is requested, it seeds one viainsert_rowon the users table. - After it returns, run
manage_oauth action: getto confirm and print the redirect URLs the user must register with each provider. - Append one line to
docs/butterbase/04-build-log.md:
auth manage_oauth ok
- Tick
- [x] authin00-state.md, setcurrent_stage:to the next unchecked stage. - Return to
journeyorchestrator (or ask"Continue to the next stage? (yes/no)").
Outputs
- Configured OAuth providers.
- Optional seed user.
- One line in
04-build-log.md.
Anti-patterns
- ❌ Echoing OAuth client secrets back to the user.
- ❌ Forgetting to give the user the provider-side redirect URL — auth will silently fail without it.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: butterbase-ai
- Source: butterbase-ai/butterbase-skills
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.