核心统一身份体验

reits-auth-web

Hosted OAuth 授权前端与私有浏览器 SDK 候选,负责 PKCE、transaction/state、callback 解析和错误归一化。

React 19ViteTypeScript@reits/auth-browser
7 / 7Hosted UI 测试
23 / 23Browser SDK 测试
0自动工作流
0发布版本
OWNERIdentity Web
RUNTIMEReact 19 · Vite · TypeScript · private browser SDK
IDENTITYAuthorization Code + PKCE with opaque transaction/state; browser receives no durable bearer session
DELIVERYdefault branch@81423fb · 30/30 tests, typecheck/build/audit green · no workflow, package release or production deployment; production lacks candidate /v1/oauth/interactions/inspect contract and Client/Redirect/Scope remain pilot hard-coded, so F3-C5 governance is open

CAPABILITIES

负责的能力

  1. 01

    Authorization Code + PKCE transaction

  2. 02

    Hosted email OTP 状态编排

  3. 03

    callback state/issuer/error 校验

  4. 04

    浏览器 SDK runtime 与错误归一化

  5. 05

    Open Platform callback/BFF 配置样例

UI & ROUTES

页面与接口面

Hosted Auth:loading/review/verify/redirecting/error@reits/auth-browser SDKD06-P5 consumer migration control plane

IMPLEMENTATION CONTRACT

运行、数据与跨项目契约

这部分给开发者和 AI 明确真实入口、状态 owner、稳定接口和可观测证据。

01

Entrypoints

  • hosted authorize UI
  • @reits/auth-browser
  • Open Platform callback/BFF examples
02

Owned data

  • sessionStorage transaction
  • ephemeral authorization response
  • server-side consumer session target
03

Contracts

  • BrowserAuthorization
  • HostedAuthorization
  • OAuthCallback
  • NormalizedAuthError
  • AuthorizationInteraction target
04

Telemetry

  • callback outcome without code/token
  • state/issuer mismatch
  • browser compatibility
  • artifact provenance

SCREEN DEFINITIONS

0 张已绑定 UI 蓝图

该仓没有独立用户界面;它通过 API、SDK、知识或计算契约支持上层产品。

NO STANDALONE UI

验收重点是契约、fixture、consumer test、性能与生产证据。