diff --git a/.version b/.version index 805579f3..a5db00c8 100644 --- a/.version +++ b/.version @@ -1 +1 @@ -v2.11.0 \ No newline at end of file +v2.12.0 \ No newline at end of file diff --git a/CHANGELOG.md b/CHANGELOG.md index adfcbd3d..e6e86de7 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,9 +1,27 @@ # Change Log +## [v2.12.0](https://github.com/auth0/auth0-angular/tree/v2.12.0) (2026-09-17) + +[Full Changelog](https://github.com/auth0/auth0-angular/compare/v2.11.0...v2.12.0) + +**⚠️ BREAKING CHANGES** + +- fix: align getAccessTokenSilently return type with auth0-spa-js [\#1043](https://github.com/auth0/auth0-angular/pull/1043) ([gyaneshgouraw](https://github.com/gyaneshgouraw)) + +**Added** + +- feat: add Enterprise Connect support [\#1017](https://github.com/auth0/auth0-angular/pull/1017) ([gyaneshgouraw](https://github.com/gyaneshgouraw)) + +**Fixed** + +- fix: remove @angular/animations and @angular/platform-browser-dynamic [\#1007](https://github.com/auth0/auth0-angular/pull/1007) ([yogeshchoudhary147](https://github.com/yogeshchoudhary147)) + ## [v2.11.0](https://github.com/auth0/auth0-angular/tree/v2.11.0) (2026-07-20) + [Full Changelog](https://github.com/auth0/auth0-angular/compare/v2.10.1...v2.11.0) **Added** + - feat: add support for Online Access (Online Refresh Tokens) [\#934](https://github.com/auth0/auth0-angular/pull/934) ([NandanPrabhu](https://github.com/NandanPrabhu)) ## [v2.10.1](https://github.com/auth0/auth0-angular/tree/v2.10.1) (2026-07-08) diff --git a/docs/assets/hierarchy.js b/docs/assets/hierarchy.js index 713cc307..83594f96 100644 --- a/docs/assets/hierarchy.js +++ b/docs/assets/hierarchy.js @@ -1 +1,2 @@ -window.hierarchyData = "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" \ No newline at end of file +window.hierarchyData = + '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'; diff --git a/docs/assets/highlight.css b/docs/assets/highlight.css index 7ddc24eb..5a27e300 100644 --- a/docs/assets/highlight.css +++ b/docs/assets/highlight.css @@ -1,31 +1,30 @@ :root { - --light-hl-0: #795E26; - --dark-hl-0: #DCDCAA; - --light-hl-1: #000000; - --dark-hl-1: #D4D4D4; - --light-hl-2: #A31515; - --dark-hl-2: #CE9178; - --light-hl-3: #AF00DB; - --dark-hl-3: #C586C0; - --light-hl-4: #001080; - --dark-hl-4: #9CDCFE; - --light-hl-5: #0000FF; - --dark-hl-5: #569CD6; - --light-hl-6: #0070C1; - --dark-hl-6: #4FC1FF; - --light-hl-7: #267F99; - --dark-hl-7: #4EC9B0; - --light-hl-8: #008000; - --dark-hl-8: #6A9955; - --light-hl-9: #000000; - --dark-hl-9: #C8C8C8; - --light-hl-10: #098658; - --dark-hl-10: #B5CEA8; - --light-code-background: #FFFFFF; - --dark-code-background: #1E1E1E; + --light-hl-0: #795e26; + --dark-hl-0: #dcdcaa; + --light-hl-1: #000000; + --dark-hl-1: #d4d4d4; + --light-hl-2: #a31515; + --dark-hl-2: #ce9178; + --light-hl-3: #af00db; + --dark-hl-3: #c586c0; + --light-hl-4: #001080; + --dark-hl-4: #9cdcfe; + --light-hl-5: #0000ff; + --dark-hl-5: #569cd6; + --light-hl-6: #0070c1; + --dark-hl-6: #4fc1ff; + --light-hl-7: #267f99; + --dark-hl-7: #4ec9b0; + --light-hl-8: #008000; + --dark-hl-8: #6a9955; + --light-hl-9: #000000; + --dark-hl-9: #c8c8c8; + --light-code-background: #ffffff; + --dark-code-background: #1e1e1e; } -@media (prefers-color-scheme: light) { :root { +@media (prefers-color-scheme: light) { + :root { --hl-0: var(--light-hl-0); --hl-1: var(--light-hl-1); --hl-2: var(--light-hl-2); @@ -36,11 +35,12 @@ --hl-7: var(--light-hl-7); --hl-8: var(--light-hl-8); --hl-9: var(--light-hl-9); - --hl-10: var(--light-hl-10); --code-background: var(--light-code-background); -} } + } +} -@media (prefers-color-scheme: dark) { :root { +@media (prefers-color-scheme: dark) { + :root { --hl-0: var(--dark-hl-0); --hl-1: var(--dark-hl-1); --hl-2: var(--dark-hl-2); @@ -51,49 +51,70 @@ --hl-7: var(--dark-hl-7); --hl-8: var(--dark-hl-8); --hl-9: var(--dark-hl-9); - --hl-10: var(--dark-hl-10); --code-background: var(--dark-code-background); -} } + } +} :root[data-theme='light'] { - --hl-0: var(--light-hl-0); - --hl-1: var(--light-hl-1); - --hl-2: var(--light-hl-2); - --hl-3: var(--light-hl-3); - --hl-4: var(--light-hl-4); - --hl-5: var(--light-hl-5); - --hl-6: var(--light-hl-6); - --hl-7: var(--light-hl-7); - --hl-8: var(--light-hl-8); - --hl-9: var(--light-hl-9); - --hl-10: var(--light-hl-10); - --code-background: var(--light-code-background); + --hl-0: var(--light-hl-0); + --hl-1: var(--light-hl-1); + --hl-2: var(--light-hl-2); + --hl-3: var(--light-hl-3); + --hl-4: var(--light-hl-4); + --hl-5: var(--light-hl-5); + --hl-6: var(--light-hl-6); + --hl-7: var(--light-hl-7); + --hl-8: var(--light-hl-8); + --hl-9: var(--light-hl-9); + --code-background: var(--light-code-background); } :root[data-theme='dark'] { - --hl-0: var(--dark-hl-0); - --hl-1: var(--dark-hl-1); - --hl-2: var(--dark-hl-2); - --hl-3: var(--dark-hl-3); - --hl-4: var(--dark-hl-4); - --hl-5: var(--dark-hl-5); - --hl-6: var(--dark-hl-6); - --hl-7: var(--dark-hl-7); - --hl-8: var(--dark-hl-8); - --hl-9: var(--dark-hl-9); - --hl-10: var(--dark-hl-10); - --code-background: var(--dark-code-background); + --hl-0: var(--dark-hl-0); + --hl-1: var(--dark-hl-1); + --hl-2: var(--dark-hl-2); + --hl-3: var(--dark-hl-3); + --hl-4: var(--dark-hl-4); + --hl-5: var(--dark-hl-5); + --hl-6: var(--dark-hl-6); + --hl-7: var(--dark-hl-7); + --hl-8: var(--dark-hl-8); + --hl-9: var(--dark-hl-9); + --code-background: var(--dark-code-background); } -.hl-0 { color: var(--hl-0); } -.hl-1 { color: var(--hl-1); } -.hl-2 { color: var(--hl-2); } -.hl-3 { color: var(--hl-3); } -.hl-4 { color: var(--hl-4); } -.hl-5 { color: var(--hl-5); } -.hl-6 { color: var(--hl-6); } -.hl-7 { color: var(--hl-7); } -.hl-8 { color: var(--hl-8); } -.hl-9 { color: var(--hl-9); } -.hl-10 { color: var(--hl-10); } -pre, code, math[display='block'] { background: var(--code-background); } +.hl-0 { + color: var(--hl-0); +} +.hl-1 { + color: var(--hl-1); +} +.hl-2 { + color: var(--hl-2); +} +.hl-3 { + color: var(--hl-3); +} +.hl-4 { + color: var(--hl-4); +} +.hl-5 { + color: var(--hl-5); +} +.hl-6 { + color: var(--hl-6); +} +.hl-7 { + color: var(--hl-7); +} +.hl-8 { + color: var(--hl-8); +} +.hl-9 { + color: var(--hl-9); +} +pre, +code, +math[display='block'] { + background: var(--code-background); +} diff --git a/docs/assets/navigation.js b/docs/assets/navigation.js index 4e65a115..0d533131 100644 --- a/docs/assets/navigation.js +++ b/docs/assets/navigation.js @@ -1 +1,2 @@ -window.navigationData = "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" \ No newline at end of file +window.navigationData = + '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'; diff --git a/docs/assets/search.js b/docs/assets/search.js index 0104db09..49086a4f 100644 --- a/docs/assets/search.js +++ b/docs/assets/search.js @@ -1 +1,2 @@ -window.searchData = "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"; \ No newline at end of file +window.searchData = + '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'; diff --git a/docs/classes/AbstractNavigator.html b/docs/classes/AbstractNavigator.html index 6445957c..33cde8f8 100644 --- a/docs/classes/AbstractNavigator.html +++ b/docs/classes/AbstractNavigator.html @@ -1,89 +1,592 @@ -
+ Navigates to the specified url. The router will be used
+ if one is available, otherwise it falls back to
+ window.history.replaceState.
+
The url to navigate to
+StaticcreateStaticcreateGets and sets configuration for the internal Auth0 client. This can be -used to provide configuration outside of using AuthModule.forRoot, i.e. from -a factory provided by APP_INITIALIZER.
-// app.module.ts
// ---------------------------
import { AuthModule, AuthClientConfig } from '@auth0/auth0-angular';
// Provide an initializer function that returns a Promise
function configInitializer(
http: HttpClient,
config: AuthClientConfig
) {
return () =>
http
.get('/config')
.toPromise()
.then((loadedConfig: any) => config.set(loadedConfig)); // Set the config that was loaded asynchronously here
}
// Provide APP_INITIALIZER with this function. Note that there is no config passed to AuthModule.forRoot
imports: [
// other imports..
HttpClientModule,
AuthModule.forRoot(), //<- don't pass any config here
],
providers: [
{
provide: APP_INITIALIZER,
useFactory: configInitializer, // <- pass your initializer function here
deps: [HttpClient, AuthClientConfig],
multi: true,
},
],
+
+
+
+
+
+ AuthClientConfig | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class AuthClientConfig
+
+
+
+
+ Gets and sets configuration for the internal Auth0 client. This
+ can be used to provide configuration outside of using
+ AuthModule.forRoot, i.e. from a factory provided by
+ APP_INITIALIZER.
+
+
+
+
+
+ Usage
+
+ // app.module.ts
// ---------------------------
import { AuthModule, AuthClientConfig } from '@auth0/auth0-angular';
// Provide an initializer function that returns a Promise
function configInitializer(
http: HttpClient,
config: AuthClientConfig
) {
return () =>
http
.get('/config')
.toPromise()
.then((loadedConfig: any) => config.set(loadedConfig)); // Set the config that was loaded asynchronously here
}
// Provide APP_INITIALIZER with this function. Note that there is no config passed to AuthModule.forRoot
imports: [
// other imports..
HttpClientModule,
AuthModule.forRoot(), //<- don't pass any config here
],
providers: [
{
provide: APP_INITIALIZER,
useFactory: configInitializer, // <- pass your initializer function here
deps: [HttpClient, AuthClientConfig],
multi: true,
},
],
-
-
-
-
-
-
-Constructors
-
-
-constructor
-
--
-
-
-
-
Parameters
-
-Optionalconfig: AuthConfig
-Returns AuthClientConfig
-
-Methods
-
-
-get
-
--
-
-
-
Gets the config that has been set by other consumers of the service
-
-Returns AuthConfig
-
-set
-
--
-
-
-
Sets configuration to be read by other consumers of the service (see usage notes)
-
-
-Parameters
-
-- config: AuthConfig
-
The configuration to set
-
-Returns void
-
-
+ Optionalconfig:
+ AuthConfig
+ + Gets the config that has been set by other consumers of + the service +
++ Sets configuration to be read by other consumers of the + service (see usage notes) +
+The configuration to set
+Identifies and handles a given HTTP request.
-The outgoing request object to handle.
-The next interceptor in the chain, or the backend -if no interceptors remain in the chain.
-An observable of the event stream.
-Identifies and handles a given HTTP request.
+The outgoing request object to handle.
++ The next interceptor in the chain, or the backend + if no interceptors remain in the chain. +
+An observable of the event stream.
+ +StaticforInitialize the authentication module system. Configuration can either be specified here, -or by calling AuthClientConfig.set (perhaps from an APP_INITIALIZER factory function).
-Optionalconfig: AuthConfig
-The optional configuration for the SDK.
-Staticfor+ Initialize the authentication module system. + Configuration can either be specified here, or by + calling AuthClientConfig.set (perhaps from an + APP_INITIALIZER factory function). +
+Optionalconfig:
+ AuthConfig
+ The optional configuration for the SDK.
+ReadonlyappEmits the value (if any) that was passed to the loginWithRedirect method call
-but only after handleRedirectCallback is first called
Readonlyerror$Emits errors that occur during login, or when checking for an active session on startup.
-ReadonlyidEmits ID token claims when authenticated, or null if not authenticated.
-ReadonlyisEmits boolean values indicating the authentication state of the user. If true, it means a user has authenticated.
-This depends on the value of isLoading$, so there is no need to manually check the loading state of the SDK.
ReadonlyisEmits boolean values indicating the loading state of the SDK.
-ReadonlymfaProvides MFA (Multi-Factor Authentication) operations as Observables.
-These methods are available after getAccessTokenSilently throws an MfaRequiredError.
-Use the mfa_token from the error to call these methods.
ReadonlymyProvides MyAccount API operations as Observables.
-Allows the authenticated user to list, enroll, update, and delete their
-authentication methods. Requires an access token with the appropriate
-read/create/update/delete:me:authentication-methods scopes.
ReadonlypasskeyProvides Passkey (WebAuthn) authentication as Observables.
-Both methods handle the full WebAuthn challenge-response flow internally. -After a successful call, this updates the authentication state to ensure -consistency with the standard authentication flows.
-Readonlyuser$Emits details about the authenticated user, or null if not authenticated.
-connectAccountWithRedirect({
connection: 'google-oauth2',
scopes: ['openid', 'profile', 'email', 'https://www.googleapis.com/auth/drive.readonly'],
authorization_params: {
// additional authorization params to forward to the authorization server
}
});
+
+
+
+
+
+ AuthService | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class AuthService<TAppState>
+
+
+ Type Parameters
+
+
+
+ Implements
+
+ - OnDestroy
+
+
+
+
+
+
+
+
+ Index
+
+
+
+
+ Constructors
+
+
+ constructor
+
+
+
+
+ Properties
+
+
+ app State$
+ error$
+ id Token Claims$
+ is Authenticated$
+ is Loading$
+ mfa
+ my Account
+ passkey
+ user$
+
+
+
+
+ Methods
+
+
+
+
+
+
+
+
+
+
+
+ Constructors
+
+
+
+
+
+ constructor
+
+
+ -
+
+ new
+ AuthService<TAppState
+ extends
+ AppState
+ =
+ AppState>(
auth0Client:
+ Auth0Client,
configFactory:
+ AuthClientConfig,
navigator:
+ AbstractNavigator,
authState:
+ AuthState,
):
+ AuthService<TAppState>
+
+
+
+ Type Parameters
+
+
+
+ Parameters
+
+ -
+ auth0Client:
+ Auth0Client
+
+ -
+ configFactory:
+ AuthClientConfig
+
+ -
+ navigator:
+ AbstractNavigator
+
+ -
+ authState:
+ AuthState
+
+
+
+
+ Returns
+ AuthService<TAppState>
+
+
+
+
+
+
+
+
+
+
+
+
+ Properties
+
+
+
+
+
+ Readonlyapp State$
+
+
+
+
+ Emits the value (if any) that was passed to the
+ loginWithRedirect method call but only
+ after handleRedirectCallback is
+ first called
+
+
+
+
+
+
+ Readonlyerror$
+
+
+ error$:
+ Observable<Error> = ...
+
+
+
+ Emits errors that occur during login, or when checking for an
+ active session on startup.
+
+
+
+
+
+
+ Readonlyid Token Claims$
+
+
+
+
+ Emits ID token claims when authenticated, or null if not
+ authenticated.
+
+
+
+
+
+
+ Readonlyis Authenticated$
+
+
+ isAuthenticated$:
+ Observable<boolean> = ...
+
+
+
+ Emits boolean values indicating the authentication state of
+ the user. If true, it means a user has
+ authenticated. This depends on the value of
+ isLoading$, so there is no need to manually check
+ the loading state of the SDK.
+
+
+
+
+
+
+ Readonlyis Loading$
+
+
+ isLoading$:
+ Observable<boolean> = ...
+
+
+
+ Emits boolean values indicating the loading state of the SDK.
+
+
+
+
+
+
+ Readonlymfa
+
+
+
+
+ Provides MFA (Multi-Factor Authentication) operations as
+ Observables.
+
+
+ These methods are available after
+ getAccessTokenSilently throws an
+ MfaRequiredError. Use the
+ mfa_token from the error to call these methods.
+
+
+
+
+
+
+ Readonlymy Account
+
+
+
+ Provides MyAccount API operations as Observables.
+
+ Allows the authenticated user to list, enroll, update, and
+ delete their authentication methods. Requires an access token
+ with the appropriate
+ read/create/update/delete:me:authentication-methods
+ scopes.
+
+
+
+
+
+
+ Readonlypasskey
+
+
+
+
+ Provides Passkey (WebAuthn) authentication as Observables.
+
+
+ Both methods handle the full WebAuthn challenge-response flow
+ internally. After a successful call, this updates the
+ authentication state to ensure consistency with the standard
+ authentication flows.
+
+
+
+
+
+
+ Readonlyuser$
+
+
+
+
+ Emits details about the authenticated user, or null if not
+ authenticated.
+
+
+
+
+
+
+
+
+
+
+ Methods
+
+
+
+
+
+ connect Account With Redirect
+
+
+ -
+
+ connectAccountWithRedirect(
options:
+ RedirectConnectAccountOptions<TAppState>,
):
+ Observable<void>
+
+
+
+ connectAccountWithRedirect({
connection: 'google-oauth2',
scopes: ['openid', 'profile', 'email', 'https://www.googleapis.com/auth/drive.readonly'],
authorization_params: {
// additional authorization params to forward to the authorization server
}
});
-Redirects to the /connect URL using the parameters
-provided as arguments. This then redirects to the connection's login page
-where the user can authenticate and authorize the account to be connected.
-If connecting the account is successful, handleRedirectCallback will be called
-with the details of the connected account.
-
-
-Parameters
-
-- options: RedirectConnectAccountOptions<TAppState>
-
The connect account options
-
-Returns Observable<void>
-
-create Fetcher
-
--
-createFetcher<TOutput extends CustomFetchMinimalOutput = Response>(
config?: FetcherConfig<TOutput>,
): Fetcher<TOutput>
-
-const fetcher = createFetcher(config);
+
+ Redirects to the /connect URL using the
+ parameters provided as arguments. This then redirects to
+ the connection's login page where the user can
+ authenticate and authorize the account to be connected.
+
+
+ If connecting the account is successful,
+ handleRedirectCallback will be called with
+ the details of the connected account.
+
+
+
+ Parameters
+
+ -
+ options:
+ RedirectConnectAccountOptions<TAppState>
+
+
The connect account options
+
+
+
+
+
+ Returns Observable<void>
+
+
+
+
+
+
+
+
+ create Fetcher
+
+
+ -
+
+ createFetcher<TOutput
+ extends
+ CustomFetchMinimalOutput
+ =
+ Response>(
config?:
+ FetcherConfig<TOutput>,
):
+ Fetcher<TOutput>
+
+
+
+ const fetcher = createFetcher(config);
-Creates a custom fetcher instance that can be used to make authenticated
-HTTP requests. The fetcher automatically handles token refresh and can
-be configured with custom request/response handling.
-
-
-Type Parameters
-
-- TOutput extends CustomFetchMinimalOutput = Response
-
-Parameters
-
-Optionalconfig: FetcherConfig<TOutput>
-Optional configuration for the fetcher
-
-Returns Fetcher<TOutput>
A Fetcher instance configured with the Auth0 client.
-
-
-generate Dpop Proof
-
--
-generateDpopProof(
params: {
accessToken: string;
method: string;
nonce?: string;
url: string;
},
): Observable<string>
-
-generateDpopProof(params).subscribe(proof => ...)
+
+ Creates a custom fetcher instance that can be used to
+ make authenticated HTTP requests. The fetcher
+ automatically handles token refresh and can be
+ configured with custom request/response handling.
+
+
+
+ Type Parameters
+
+ -
+ TOutput
+ extends
+ CustomFetchMinimalOutput
+ =
+ Response
+
+
+
+
+ Parameters
+
+ -
+
Optionalconfig:
+ FetcherConfig<TOutput>
+
+ Optional configuration for the fetcher
+
+
+
+
+
+ Returns
+ Fetcher<TOutput>
+
+ A Fetcher instance configured with the Auth0 client.
+
+
+
+
+
+
+
+ generate Dpop Proof
+
+
+ -
+
+ generateDpopProof(
params:
+ {
accessToken:
+ string;
method:
+ string;
nonce?:
+ string;
url:
+ string;
},
):
+ Observable<string>
+
+
+
+ generateDpopProof(params).subscribe(proof => ...)
-Generates a DPoP (Demonstrating Proof-of-Possession) proof JWT.
-This proof is used to bind access tokens to a specific client, providing
-an additional layer of security for token usage.
-
-
-Parameters
-
-- params: { accessToken: string; method: string; nonce?: string; url: string }
-
Configuration for generating the DPoP proof
-
-
--
-
accessToken: string
-The access token to bind to the proof
-
--
-
method: string
-The HTTP method (e.g., 'GET', 'POST')
-
--
-
Optionalnonce?: string
-Optional DPoP nonce from the authorization server
-
--
-
url: string
-The URL of the resource server endpoint
-
-Returns Observable<string>
An Observable that emits the generated DPoP proof as a JWT string.
-
-
-get Access Token Silently
-
--
-getAccessTokenSilently(
options: GetTokenSilentlyOptions & { detailedResponse: true },
): Observable<GetTokenSilentlyVerboseResponse>
-
-Fetches a new access token and returns the response from the /oauth/token endpoint, omitting the refresh token.
-
-
-Parameters
-
-- options: GetTokenSilentlyOptions & { detailedResponse: true }
-
The options for configuring the token fetch.
-
-Returns Observable<GetTokenSilentlyVerboseResponse>
--
-
-
-
Fetches a new access token and returns it.
-
-
-Parameters
-
-Optionaloptions: GetTokenSilentlyOptions
-The options for configuring the token fetch.
-
-Returns Observable<string>
-
-get Access Token With Popup
-
--
-
-
-
getTokenWithPopup(options).subscribe(token => ...)
+
+ Generates a DPoP (Demonstrating Proof-of-Possession)
+ proof JWT. This proof is used to bind access tokens to a
+ specific client, providing an additional layer of
+ security for token usage.
+
+
+
+ Parameters
+
+ -
+ params:
+ {
+ accessToken:
+ string;
+ method:
+ string;
+ nonce?:
+ string;
+ url:
+ string
+ }
+
+
Configuration for generating the DPoP proof
+
+
+ -
+
+ accessToken: string
+
+
+ The access token to bind to the proof
+
+
+ -
+
+ method: string
+
+
+ The HTTP method (e.g., 'GET', 'POST')
+
+
+ -
+
+ Optionalnonce?: string
+
+
+
+ Optional DPoP nonce from the authorization
+ server
+
+
+
+ -
+
+ url: string
+
+
+ The URL of the resource server endpoint
+
+
+
+
+
+
+
+ Returns Observable<string>
+
+
+ An Observable that emits the generated DPoP proof as a JWT
+ string.
+
+
+
+
+
+
+
+
+ get Access Token Silently
+
+
+ -
+
+ getAccessTokenSilently(
options:
+ GetTokenSilentlyOptions
+ &
+ {
+ detailedResponse:
+ true
+ },
):
+ Observable<GetTokenSilentlyVerboseResponse
+ |
+ undefined>
+
+
+
+
+ Fetches a new access token and returns the response from
+ the /oauth/token endpoint, omitting the refresh token.
+
+
+
+ Parameters
+
+ -
+ options:
+ GetTokenSilentlyOptions
+ &
+ {
+ detailedResponse:
+ true
+ }
+
+
The options for configuring the token fetch.
+
+
+
+
+
+ Returns Observable<GetTokenSilentlyVerboseResponse
+ |
+ undefined>
+
+
+
+
+ -
+
+ getAccessTokenSilently(
options?:
+ GetTokenSilentlyOptions,
):
+ Observable<string
+ |
+ undefined>
+
+
+
+ Fetches a new access token and returns it.
+
+
+ Parameters
+
+ -
+
Optionaloptions:
+ GetTokenSilentlyOptions
+
+ The options for configuring the token fetch.
+
+
+
+
+
+ Returns Observable<string
+ |
+ undefined>
+
+
+
+
+
+
+
+
+ get Access Token With Popup
+
+
+ -
+
+ getAccessTokenWithPopup(
options?:
+ GetTokenWithPopupOptions,
):
+ Observable<string
+ |
+ undefined>
+
+
+
+ getTokenWithPopup(options).subscribe(token => ...)
-Get an access token interactively.
-Opens a popup with the /authorize URL using the parameters
-provided as arguments. Random and secure state and nonce
-parameters will be auto-generated. If the response is successful,
-results will be valid according to their expiration times.
-
-
-Parameters
-
-Optionaloptions: GetTokenWithPopupOptions
-Returns Observable<string | undefined>
-
-get Dpop Nonce
-
--
-
-
-
getDpopNonce(id).subscribe(nonce => ...)
+ Get an access token interactively.
+
+ Opens a popup with the /authorize URL using
+ the parameters provided as arguments. Random and secure
+ state and nonce parameters
+ will be auto-generated. If the response is successful,
+ results will be valid according to their expiration
+ times.
+
+
+
+ Parameters
+
+ -
+
Optionaloptions:
+ GetTokenWithPopupOptions
+
+
+
+
+ Returns Observable<string
+ |
+ undefined>
+
+
+
+
+
+
+
+
+ get Dpop Nonce
+
+
+ -
+
+
+
+
getDpopNonce(id).subscribe(nonce => ...)
-Gets the DPoP nonce for the specified domain or the default domain.
-The nonce is used in DPoP proof generation for token binding.
-
-
-Parameters
-
-Optionalid: string
-Optional identifier for the domain. If not provided, uses the default domain.
-
-Returns Observable<string | undefined>
An Observable that emits the DPoP nonce string or undefined if not available.
-
-
-handle Redirect Callback
-
--
-handleRedirectCallback(
url?: string,
): Observable<
RedirectLoginResult<TAppState>
| ConnectAccountRedirectResult<TAppState>,
>
-
-handleRedirectCallback(url).subscribe(result => ...)
+
+ Gets the DPoP nonce for the specified domain or the
+ default domain. The nonce is used in DPoP proof
+ generation for token binding.
+
+
+
+ Parameters
+
+ -
+
Optionalid:
+ string
+
+
+ Optional identifier for the domain. If not
+ provided, uses the default domain.
+
+
+
+
+
+
+ Returns Observable<string
+ |
+ undefined>
+
+
+ An Observable that emits the DPoP nonce string or
+ undefined if not available.
+
+
+
+
+
+
+
+
+ handle Redirect Callback
+
+
+ -
+
+ handleRedirectCallback(
url?:
+ string,
):
+ Observable<
RedirectLoginResult<TAppState>
|
+ ConnectAccountRedirectResult<TAppState>,
>
+
+
+
+ handleRedirectCallback(url).subscribe(result => ...)
-After the browser redirects back to the callback page,
-call handleRedirectCallback to handle success and error
-responses from Auth0. If the response is successful, results
-will be valid according to their expiration times.
-Calling this method also refreshes the authentication and user states.
-
-
-Parameters
-
-Optionalurl: string
-The URL to that should be used to retrieve the state and code values. Defaults to window.location.href if not given.
-
-Returns Observable<
RedirectLoginResult<TAppState>
| ConnectAccountRedirectResult<TAppState>,
>
-
-login With Custom Token Exchange
-
--
-loginWithCustomTokenExchange(
options: CustomTokenExchangeOptions,
): Observable<TokenEndpointResponse>
-
-loginWithCustomTokenExchange(options).subscribe(tokenResponse => ...)
+
+ After the browser redirects back to the callback page,
+ call handleRedirectCallback to handle
+ success and error responses from Auth0. If the response
+ is successful, results will be valid according to their
+ expiration times.
+
+
+ Calling this method also refreshes the authentication
+ and user states.
+
+
+
+ Parameters
+
+ -
+
Optionalurl:
+ string
+
+
+ The URL to that should be used to retrieve the
+ state and code values.
+ Defaults to window.location.href if
+ not given.
+
+
+
+
+
+
+ Returns Observable<
RedirectLoginResult<TAppState>
|
+ ConnectAccountRedirectResult<TAppState>,
>
+
+
+
+
+
+
+
+
+ login With Custom Token Exchange
+
+
+ -
+
+ loginWithCustomTokenExchange(
options:
+ CustomTokenExchangeOptions,
):
+ Observable<TokenEndpointResponse>
+
+
+
+ loginWithCustomTokenExchange(options).subscribe(tokenResponse => ...)
-Exchanges an external subject token for Auth0 tokens and establishes an authenticated session.
-This method implements the token exchange grant as specified in RFC 8693.
-It performs a token exchange by sending a request to the /oauth/token endpoint
-with the external token and returns Auth0 tokens (access token, ID token, etc.).
-The request includes the following parameters:
-
-grant_type: Hard-coded to "urn:ietf:params:oauth:grant-type:token-exchange"
-subject_token: The external token to be exchanged
-subject_token_type: A namespaced URI identifying the token type (must be under your organization's control)
-audience: The target audience (falls back to the SDK's default audience if not provided)
-scope: Space-separated list of scopes (merged with the SDK's default scopes)
-
-After a successful token exchange, this method updates the authentication state
-to ensure consistency with the standard authentication flows.
-
-
-Parameters
-
-- options: CustomTokenExchangeOptions
-
The options required to perform the token exchange
-
-Returns Observable<TokenEndpointResponse>
An Observable that emits the token endpoint response containing Auth0 tokens
-
-
-login With Popup
-
--
-
-
-
await loginWithPopup(options);
+
+ Exchanges an external subject token for Auth0 tokens and
+ establishes an authenticated session.
+
+
+ This method implements the token exchange grant as
+ specified in RFC 8693. It performs a token exchange by
+ sending a request to the
+ /oauth/token endpoint with the external
+ token and returns Auth0 tokens (access token, ID token,
+ etc.).
+
+ The request includes the following parameters:
+
+ -
+
grant_type: Hard-coded to
+ "urn:ietf:params:oauth:grant-type:token-exchange"
+
+ -
+
subject_token: The external token to be
+ exchanged
+
+ -
+
subject_token_type: A namespaced URI
+ identifying the token type (must be under your
+ organization's control)
+
+ -
+
audience: The target audience (falls back
+ to the SDK's default audience if not provided)
+
+ -
+
scope: Space-separated list of scopes
+ (merged with the SDK's default scopes)
+
+
+
+ After a successful token exchange, this method updates
+ the authentication state to ensure consistency with the
+ standard authentication flows.
+
+
+
+ Parameters
+
+ -
+ options:
+ CustomTokenExchangeOptions
+
+
+ The options required to perform the token exchange
+
+
+
+
+
+
+ Returns Observable<TokenEndpointResponse>
+
+
+ An Observable that emits the token endpoint response
+ containing Auth0 tokens
+
+
+
+
+
+
+
+
+ login With Popup
+
+
+ -
+
+ loginWithPopup(
options?:
+ PopupLoginOptions,
config?:
+ PopupConfigOptions,
):
+ Observable<void>
+
+
+
+ await loginWithPopup(options);
-Opens a popup with the /authorize URL using the parameters
-provided as arguments. Random and secure state and nonce
-parameters will be auto-generated. If the response is successful,
-results will be valid according to their expiration times.
-IMPORTANT: This method has to be called from an event handler
-that was started by the user like a button click, for example,
-otherwise the popup will be blocked in most browsers.
-
-
-Parameters
-
-Optionaloptions: PopupLoginOptions
-The login options
-
-Optionalconfig: PopupConfigOptions
-Configuration for the popup window
-
-Returns Observable<void>
-
-login With Redirect
-
--
-
-
-
loginWithRedirect(options);
+
+ Opens a popup with the /authorize URL using
+ the parameters provided as arguments. Random and secure
+ state and nonce parameters
+ will be auto-generated. If the response is successful,
+ results will be valid according to their expiration
+ times.
+
+
+ IMPORTANT: This method has to be called from an event
+ handler that was started by the user like a button
+ click, for example, otherwise the popup will be blocked
+ in most browsers.
+
+
+
+ Parameters
+
+ -
+
Optionaloptions:
+ PopupLoginOptions
+
+ The login options
+
+
+ -
+
Optionalconfig:
+ PopupConfigOptions
+
+ Configuration for the popup window
+
+
+
+
+
+ Returns Observable<void>
+
+
+
+
+
+
+
+
+ login With Redirect
+
+
+ -
+
+
+
+
loginWithRedirect(options);
-Performs a redirect to /authorize using the parameters
-provided as arguments. Random and secure state and nonce
-parameters will be auto-generated.
-
-
-Parameters
-
-Optionaloptions: RedirectLoginOptions<TAppState>
-The login options
-
-Returns Observable<void>
-
-logout
-
--
-
-
-
logout();
+
+ Performs a redirect to /authorize using the
+ parameters provided as arguments. Random and secure
+ state and nonce parameters
+ will be auto-generated.
+
+
+
+ Parameters
+
+ -
+
Optionaloptions:
+ RedirectLoginOptions<TAppState>
+
+ The login options
+
+
+
+
+
+ Returns Observable<void>
+
+
+
+
+
+
+
+
+ logout
+
+
+ -
+
+
+
+
logout();
-Clears the application session and performs a redirect to /v2/logout, using
-the parameters provided as arguments, to clear the Auth0 session.
-If the federated option is specified it also clears the Identity Provider session.
-If the openUrl option is set to false, it only clears the application session.
-It is invalid to set both the federated to true and openUrl to false,
-and an error will be thrown if you do.
-Read more about how Logout works at Auth0.
-
-
-Parameters
-
-Optionaloptions: LogoutOptions
-The logout options
-
-Returns Observable<void>
-
-ng On Destroy
-
--
-
-
-
Called when the service is destroyed
-
-Returns void
-
-set Dpop Nonce
-
--
-
-
-
setDpopNonce(nonce, id).subscribe(() => ...)
+
+ Clears the application session and performs a redirect
+ to /v2/logout, using the parameters
+ provided as arguments, to clear the Auth0 session. If
+ the federated option is specified it also
+ clears the Identity Provider session. If the
+ openUrl option is set to false, it only
+ clears the application session. It is invalid to set
+ both the federated to true and
+ openUrl to false, and an error
+ will be thrown if you do.
+ Read more about how Logout works at Auth0.
+
+
+
+ Parameters
+
+ -
+
Optionaloptions:
+ LogoutOptions
+
+ The logout options
+
+
+
+
+
+ Returns Observable<void>
+
+
+
+
+
+
+
+
+ ng On Destroy
+
+
+ -
+
+
+
+
Called when the service is destroyed
+
+
+ Returns void
+
+
+
+
+
+
+
+
+ set Dpop Nonce
+
+
+ -
+
+
+
+
setDpopNonce(nonce, id).subscribe(() => ...)
-Sets the DPoP nonce for the specified domain or the default domain.
-This is typically used after receiving a new nonce from the authorization server.
-
-
-Parameters
-
-- nonce: string
-
The DPoP nonce value to set.
-
-Optionalid: string
-Optional identifier for the domain. If not provided, uses the default domain.
-
-Returns Observable<void>
An Observable that completes when the nonce is set.
-
-
-
+
+ Sets the DPoP nonce for the specified domain or the
+ default domain. This is typically used after receiving a
+ new nonce from the authorization server.
+
+ The DPoP nonce value to set.
+Optionalid:
+ string
+ + Optional identifier for the domain. If not + provided, uses the default domain. +
+An Observable that completes when the nonce is set.
+ +Tracks the Authentication State for the SDK
-Readonlyerror$Emits errors that occur during login, or when checking for an active session on startup.
-ReadonlyidEmits ID token claims when authenticated, or null if not authenticated.
-ReadonlyisEmits boolean values indicating the authentication state of the user. If true, it means a user has authenticated.
-This depends on the value of isLoading$, so there is no need to manually check the loading state of the SDK.
ReadonlyisEmits boolean values indicating the loading state of the SDK.
-Readonlyuser$Emits details about the authenticated user, or null if not authenticated.
-Refresh the state to ensure the isAuthenticated, user$ and idTokenClaims$
-reflect the most up-to-date values from Auth0Client.
Update the access token, doing so will also refresh the state.
-The new Access Token
-Emits the error in the error$ observable.
The new error
-Update the isLoading state using the provided value
-The new value for isLoading
-Tracks the Authentication State for the SDK
+Readonlyerror$
+ + Emits errors that occur during login, or when checking for an + active session on startup. +
+Readonlyid+ Emits ID token claims when authenticated, or null if not + authenticated. +
+Readonlyis
+ Emits boolean values indicating the authentication state of
+ the user. If true, it means a user has
+ authenticated. This depends on the value of
+ isLoading$, so there is no need to manually check
+ the loading state of the SDK.
+
Readonlyis+ Emits boolean values indicating the loading state of the SDK. +
+Readonlyuser$
+ + Emits details about the authenticated user, or null if not + authenticated. +
+
+ Refresh the state to ensure the
+ isAuthenticated, user$ and
+ idTokenClaims$ reflect the most up-to-date
+ values from Auth0Client.
+
+ Update the access token, doing so will also refresh the + state. +
+The new Access Token
+
+ Emits the error in the error$ observable.
+
The new error
+Update the isLoading state using the provided value
+The new value for isLoading
+Thrown when handling the redirect callback fails, will be one of Auth0's -Authentication API's Standard Error Responses: https://auth0.com/docs/api/authentication?javascript#standard-error-responses
-OptionalappState: anyOptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Thrown when handling the redirect callback fails, will be one of + Auth0's Authentication API's Standard Error Responses: + https://auth0.com/docs/api/authentication?javascript#standard-error-responses +
+OptionalappState:
+ any
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromThrown when handling the redirect callback for the connect flow fails, will be one of Auth0's -Authentication API's Standard Error Responses: https://auth0.com/docs/api/authentication?javascript#standard-error-responses
-OptionalappState: anyOptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Thrown when handling the redirect callback for the connect flow + fails, will be one of Auth0's Authentication API's Standard Error + Responses: + https://auth0.com/docs/api/authentication?javascript#standard-error-responses +
+OptionalappState:
+ any
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromProtectedbuildProtectedbuildProtectedextractProtectedgetOptionalauthParams: AuthParamsProtectedgetProtectedhandleProtectedhasProtectedinternalProtectedisProtectedprepareOptionalauthParams: AuthParamsProtectedsetOptionaltokenType: stringProtectedsetProtected
+ Readonlyconfig
+ Protected
+ Readonlyhooks
+ ProtectedbuildProtectedbuildProtectedextractProtectedgetProtectedgetProtectedhandleProtectedhasProtectedinternalProtectedisProtectedprepareOptionalauthParams:
+ AuthParams
+ ProtectedsetProtectedsetThrown when network requests to the Auth server fail.
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepareThrown when network requests to the Auth server fail.
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromThrown at construction time for an invalid option combination (e.g.
-refreshTokenMode: 'online' without useDpop: true). The suggestion names the fix.
OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare
+ Thrown at construction time for an invalid option combination
+ (e.g. refreshTokenMode: 'online' without
+ useDpop: true). The suggestion names the
+ fix.
+
OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromError thrown when initiating an MFA challenge fails.
-try {
const challenge = await mfa.challenge({
mfaToken: mfaToken,
challengeType: 'otp',
authenticatorId: 'otp|dev_123'
});
} catch (error) {
if (error instanceof MfaChallengeError) {
console.log(error.error); // 'too_many_attempts'
console.log(error.error_description); // 'Rate limit exceeded'
}
}
+
+
+
+
+
+ MfaChallengeError | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class MfaChallengeError
+
+
+
+ Error thrown when initiating an MFA challenge fails.
+
+
+
+
+ Example
+
+ try {
const challenge = await mfa.challenge({
mfaToken: mfaToken,
challengeType: 'otp',
authenticatorId: 'otp|dev_123'
});
} catch (error) {
if (error instanceof MfaChallengeError) {
console.log(error.error); // 'too_many_attempts'
console.log(error.error_description); // 'Rate limit exceeded'
}
}
-
-
-
-Hierarchy (View Summary)
-
-- MfaError
-
-- MfaChallengeError
-
-
-
-
-Constructors
-
-
-constructor
-
--
-
-
-
-
Parameters
-
-- error: string
-- error_description: string
-Returns MfaChallengeError
-
-Properties
-
-
-error
-error: string
-
-error_ description
-error_description: string
-
-message
-message: string
-
-name
-name: string
-
-Optionalstack
-stack?: string
-
-Staticstack Trace Limit
-stackTraceLimit: number
-The Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
-The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
-If set to a non-number value, or set to a negative number, stack traces will
-not capture any frames.
-
-
-Methods
-
-
-Staticcapture Stack Trace
-
--
-
-
-
Creates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
-const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
-The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
-The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
-function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-
-
-Parameters
-
-- targetObject: object
-OptionalconstructorOpt: Function
-Returns void
-
-Staticfrom Payload
-
--
-
-
-
-
Parameters
-
-- __namedParameters: { error: string; error_description: string }
-Returns MfaError
-
-Staticprepare Stack Trace
-
--
-
-
-
-
Parameters
-
-- err: Error
-- stackTraces: CallSite[]
-Returns any
-
-
-
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when enrolling an MFA authenticator fails.
-try {
const enrollment = await mfa.enroll({
authenticator_types: ['otp']
});
} catch (error) {
if (error instanceof MfaEnrollmentError) {
console.log(error.error); // 'invalid_phone_number'
console.log(error.error_description); // 'Invalid phone number format'
}
}
+
+
+
+
+
+ MfaEnrollmentError | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class MfaEnrollmentError
+
+
+
+ Error thrown when enrolling an MFA authenticator fails.
+
+
-
-Hierarchy (View Summary)
-
-- MfaError
-
-- MfaEnrollmentError
-
-
-
-
-Constructors
-
-
-constructor
-
--
-
-
-
-
Parameters
-
-- error: string
-- error_description: string
-Returns MfaEnrollmentError
-
-Properties
-
-
-error
-error: string
-
-error_ description
-error_description: string
-
-message
-message: string
-
-name
-name: string
-
-Optionalstack
-stack?: string
-
-Staticstack Trace Limit
-stackTraceLimit: number
-The Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
-The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
-If set to a non-number value, or set to a negative number, stack traces will
-not capture any frames.
-
-
-Methods
-
-
-Staticcapture Stack Trace
-
--
-
-
-
Creates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
-const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
-The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
-The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
-function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-
-
-Parameters
-
-- targetObject: object
-OptionalconstructorOpt: Function
-Returns void
-
-Staticfrom Payload
-
--
-
-
-
-
Parameters
-
-- __namedParameters: { error: string; error_description: string }
-Returns MfaError
-
-Staticprepare Stack Trace
-
--
-
-
-
-
Parameters
-
-- err: Error
-- stackTraces: CallSite[]
-Returns any
-
-
-
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when getting enrollment factors fails.
-try {
const factors = await mfa.getEnrollmentFactors(mfaToken);
} catch (error) {
if (error instanceof MfaEnrollmentFactorsError) {
console.log(error.error); // 'mfa_context_not_found'
console.log(error.error_description); // 'MFA context not found...'
}
}
+
+
+
+
+
+ MfaEnrollmentFactorsError | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class MfaEnrollmentFactorsError
+
+
+
+ Error thrown when getting enrollment factors fails.
+
+
-
-Hierarchy (View Summary)
-
-- MfaError
-
-- MfaEnrollmentFactorsError
-
-
-
-
-Constructors
-
-
-constructor
-
--
-new MfaEnrollmentFactorsError(
error: string,
error_description: string,
): MfaEnrollmentFactorsError
-
-
-Parameters
-
-- error: string
-- error_description: string
-Returns MfaEnrollmentFactorsError
-
-Properties
-
-
-error
-error: string
-
-error_ description
-error_description: string
-
-message
-message: string
-
-name
-name: string
-
-Optionalstack
-stack?: string
-
-Staticstack Trace Limit
-stackTraceLimit: number
-The Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
-The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
-If set to a non-number value, or set to a negative number, stack traces will
-not capture any frames.
-
-
-Methods
-
-
-Staticcapture Stack Trace
-
--
-
-
-
Creates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
-const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
-The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
-The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
-function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-
-
-Parameters
-
-- targetObject: object
-OptionalconstructorOpt: Function
-Returns void
-
-Staticfrom Payload
-
--
-
-
-
-
Parameters
-
-- __namedParameters: { error: string; error_description: string }
-Returns MfaError
-
-Staticprepare Stack Trace
-
--
-
-
-
-
Parameters
-
-- err: Error
-- stackTraces: CallSite[]
-Returns any
-
-
-
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Base class for MFA-related errors in auth0-spa-js. -Extends GenericError for unified error hierarchy across the SDK.
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Base class for MFA-related errors in auth0-spa-js. Extends + GenericError for unified error hierarchy across the SDK. +
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when listing MFA authenticators fails.
-try {
const authenticators = await mfa.getAuthenticators();
} catch (error) {
if (error instanceof MfaListAuthenticatorsError) {
console.log(error.error); // 'access_denied'
console.log(error.error_description); // 'Unauthorized'
}
}
+
+
+
+
+
+ MfaListAuthenticatorsError | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class MfaListAuthenticatorsError
+
+
+
+ Error thrown when listing MFA authenticators fails.
+
+
-
-Hierarchy (View Summary)
-
-- MfaError
-
-- MfaListAuthenticatorsError
-
-
-
-
-Constructors
-
-
-constructor
-
--
-new MfaListAuthenticatorsError(
error: string,
error_description: string,
): MfaListAuthenticatorsError
-
-
-Parameters
-
-- error: string
-- error_description: string
-Returns MfaListAuthenticatorsError
-
-Properties
-
-
-error
-error: string
-
-error_ description
-error_description: string
-
-message
-message: string
-
-name
-name: string
-
-Optionalstack
-stack?: string
-
-Staticstack Trace Limit
-stackTraceLimit: number
-The Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
-The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
-If set to a non-number value, or set to a negative number, stack traces will
-not capture any frames.
-
-
-Methods
-
-
-Staticcapture Stack Trace
-
--
-
-
-
Creates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
-const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
-The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
-The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
-function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-
-
-Parameters
-
-- targetObject: object
-OptionalconstructorOpt: Function
-Returns void
-
-Staticfrom Payload
-
--
-
-
-
-
Parameters
-
-- __namedParameters: { error: string; error_description: string }
-Returns MfaError
-
-Staticprepare Stack Trace
-
--
-
-
-
-
Parameters
-
-- err: Error
-- stackTraces: CallSite[]
-Returns any
-
-
-
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when the token exchange results in a mfa_required error
OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare
+ Error thrown when the token exchange results in a
+ mfa_required error
+
OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromError thrown when verifying an MFA challenge fails.
-try {
const tokens = await mfa.verify({
mfaToken: mfaToken,
grant_type: 'http://auth0.com/oauth/grant-type/mfa-otp',
otp: '123456'
});
} catch (error) {
if (error instanceof MfaVerifyError) {
console.log(error.error); // 'invalid_otp' or 'context_not_found'
console.log(error.error_description); // Error details
}
}
+
+
+
+
+
+ MfaVerifyError | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class MfaVerifyError
+
+
+
+ Error thrown when verifying an MFA challenge fails.
+
+
+
+
+ Example
+
+ try {
const tokens = await mfa.verify({
mfaToken: mfaToken,
grant_type: 'http://auth0.com/oauth/grant-type/mfa-otp',
otp: '123456'
});
} catch (error) {
if (error instanceof MfaVerifyError) {
console.log(error.error); // 'invalid_otp' or 'context_not_found'
console.log(error.error_description); // Error details
}
}
-
-
-
-Hierarchy (View Summary)
-
-- MfaError
-
-- MfaVerifyError
-
-
-
-
-Constructors
-
-
-constructor
-
--
-
-
-
-
Parameters
-
-- error: string
-- error_description: string
-Returns MfaVerifyError
-
-Properties
-
-
-error
-error: string
-
-error_ description
-error_description: string
-
-message
-message: string
-
-name
-name: string
-
-Optionalstack
-stack?: string
-
-Staticstack Trace Limit
-stackTraceLimit: number
-The Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
-The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
-If set to a non-number value, or set to a negative number, stack traces will
-not capture any frames.
-
-
-Methods
-
-
-Staticcapture Stack Trace
-
--
-
-
-
Creates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
-const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
-The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
-The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
-function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-
-
-Parameters
-
-- targetObject: object
-OptionalconstructorOpt: Function
-Returns void
-
-Staticfrom Payload
-
--
-
-
-
-
Parameters
-
-- __namedParameters: { error: string; error_description: string }
-Returns MfaError
-
-Staticprepare Stack Trace
-
--
-
-
-
-
Parameters
-
-- err: Error
-- stackTraces: CallSite[]
-Returns any
-
-
-
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when there is no refresh token to use
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepareError thrown when there is no refresh token to use
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromError thrown when there are missing scopes after refreshing a token
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Error thrown when there are missing scopes after refreshing a + token +
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromError thrown when the MyAccount API returns a non-2xx response.
-try {
await myAccount.getAuthenticationMethods();
} catch (err) {
if (err instanceof MyAccountApiError) {
console.error(err.status, err.title, err.detail);
}
}
+
+
+
+
+
+ MyAccountApiError | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Class MyAccountApiError
+
+
+
+
+ Error thrown when the MyAccount API returns a non-2xx response.
+
+
+
-
-Hierarchy
-
-- Error
-
-- MyAccountApiError
-
-
-
-
-Constructors
-
-
-constructor
-
--
-
-
-
-
Parameters
-
-- __namedParameters: ErrorResponse
-Returns MyAccountApiError
-
-Properties
-
-
-Readonlydetail
-detail: string
-Human-readable explanation specific to this occurrence
-
-
-message
-message: string
-
-name
-name: string
-
-Optionalstack
-stack?: string
-
-Readonlystatus
-status: number
-HTTP status code
-
-
-Readonlytitle
-title: string
-Short human-readable summary of the error
-
-
-Readonlytype
-type: string
-RFC 7807 error type identifier
-
-
-Optional Readonlyvalidation_ errors
-validation_errors?: {
detail: string;
field?: string;
pointer?: string;
source?: string;
}[]
-Field-level validation errors, if present
-
-
-Staticstack Trace Limit
-stackTraceLimit: number
-The Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
-The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
-If set to a non-number value, or set to a negative number, stack traces will
-not capture any frames.
-
-
-Methods
-
-
-Staticcapture Stack Trace
-
--
-
-
-
Creates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
-const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
-The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
-The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
-function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-
-
-Parameters
-
-- targetObject: object
-OptionalconstructorOpt: Function
-Returns void
-
-Staticprepare Stack Trace
-
--
-
-
-
-
Parameters
-
-- err: Error
-- stackTraces: CallSite[]
-Returns any
-
-
-
+ Readonlydetail
+ Human-readable explanation specific to this occurrence
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Readonlystatus
+ HTTP status code
+Readonlytitle
+ Short human-readable summary of the error
+Readonlytype
+ RFC 7807 error type identifier
+Optional
+ Readonlyvalidation_Field-level validation errors, if present
+Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when requesting a passkey login challenge fails.
-Optionalcause: PasskeyApiErrorResponseOptionalcauseOptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticprepareError thrown when requesting a passkey login challenge fails.
+Optionalcause:
+ PasskeyApiErrorResponse
+ Optionalbody
+ Raw response body text, when available.
+Optionalcause
+ Optionalheaders
+
+ Response headers from the error response, when available.
+ Native Fetch Headers.
+
OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ OptionalstatusHTTP status code from the error response, when available.
+Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Optionalcause: PasskeyErrorResponseOptional ReadonlycauseReadonlycodeOptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticprepareOptionalcause:
+ PasskeyErrorResponse
+ Optional
+ Readonlycause
+ Readonlycode
+ OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when exchanging a passkey credential for tokens fails.
-Unlike the challenge errors, this carries mfa_token / mfa_requirements on
-its cause when the server responds with mfa_required.
Optionalcause: PasskeyGetTokenApiErrorResponseOptionalcauseOptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticprepare+ Error thrown when exchanging a passkey credential for tokens + fails. +
+
+ Unlike the challenge errors, this carries mfa_token /
+ mfa_requirements on its cause when the
+ server responds with mfa_required.
+
Optionalcause:
+ PasskeyGetTokenApiErrorResponse
+ Optionalbody
+ Raw response body text, when available.
+Optionalcause
+ Optionalheaders
+
+ Response headers from the error response, when available.
+ Native Fetch Headers.
+
OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ OptionalstatusHTTP status code from the error response, when available.
+Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Error thrown when requesting a passkey register challenge fails.
-Optionalcause: PasskeyApiErrorResponseOptionalcauseOptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticprepare+ Error thrown when requesting a passkey register challenge fails. +
+Optionalcause:
+ PasskeyApiErrorResponse
+ Optionalbody
+ Raw response body text, when available.
+Optionalcause
+ Optionalheaders
+
+ Response headers from the error response, when available.
+ Native Fetch Headers.
+
OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ OptionalstatusHTTP status code from the error response, when available.
+Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+Thrown when network requests to the Auth server fail.
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepareThrown when network requests to the Auth server fail.
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromThrown when network requests to the Auth server fail.
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepareThrown when network requests to the Auth server fail.
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromError thrown when the login popup times out (if the user does not complete auth)
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Error thrown when the login popup times out (if the user does not + complete auth) +
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromThrown when silent auth times out (usually due to a configuration issue) or -when network requests to the Auth server timeout.
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Thrown when silent auth times out (usually due to a configuration + issue) or when network requests to the Auth server timeout. +
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromError thrown when the wrong DPoP nonce is used and a potential subsequent retry wasn't able to fix it.
-OptionalstackStaticstackThe Error.stackTraceLimit property specifies the number of stack frames
-collected by a stack trace (whether generated by new Error().stack or
-Error.captureStackTrace(obj)).
The default value is 10 but may be set to any valid JavaScript number. Changes
-will affect any stack trace captured after the value has been changed.
If set to a non-number value, or set to a negative number, stack traces will -not capture any frames.
-StaticcaptureCreates a .stack property on targetObject, which when accessed returns
-a string representing the location in the code at which
-Error.captureStackTrace() was called.
const myObject = {};
Error.captureStackTrace(myObject);
myObject.stack; // Similar to `new Error().stack`
-
-
-The first line of the trace will be prefixed with
-${myObject.name}: ${myObject.message}.
The optional constructorOpt argument accepts a function. If given, all frames
-above constructorOpt, including constructorOpt, will be omitted from the
-generated stack trace.
The constructorOpt argument is useful for hiding implementation
-details of error generation from the user. For instance:
function a() {
b();
}
function b() {
c();
}
function c() {
// Create an error without stack trace to avoid calculating the stack trace twice.
const { stackTraceLimit } = Error;
Error.stackTraceLimit = 0;
const error = new Error();
Error.stackTraceLimit = stackTraceLimit;
// Capture the stack trace above function b
Error.captureStackTrace(error, b); // Neither function c, nor b is included in the stack trace
throw error;
}
a();
-
-
-OptionalconstructorOpt: FunctionStaticfromStaticprepare+ Error thrown when the wrong DPoP nonce is used and a potential + subsequent retry wasn't able to fix it. +
+OptionaloriginalOriginal stack trace with no modifications
+Optionalstack
+ Optionalzone+ Stack trace where extra frames have been removed and zone + names added. +
+StaticfromOptionalactOptionaladdressOptionalbirthdateOptionalemailOptionalemail_Optionalfamily_OptionalgenderOptionalgiven_OptionallocaleOptionalmiddle_OptionalnameOptionalnicknameOptionalphone_Optionalphone_OptionalpictureOptionalpreferred_OptionalprofileOptionalsubOptionalupdated_OptionalwebsiteOptionalzoneinfoOptionalact
+ Optionaladdress
+ Optionalbirthdate
+ Optionalemail
+ Optionalemail_Optionalfamily_Optionalgender
+ Optionalgiven_Optionallocale
+ Optionalmiddle_Optionalname
+ Optionalnickname
+ Optionalphone_Optionalphone_Optionalpicture
+ Optionalpreferred_Optionalprofile
+ Optionalsub
+ Optionalupdated_Optionalwebsite
+ Optionalzoneinfo
+ ConstDefines a common set of HTTP methods.
-ConstDefines a common set of HTTP methods.
+The types of responses expected from the authorization server.
-code: used for the standard login flow.connect_code: used for the connect account flow.+ The types of responses expected from the authorization server. +
+code: used for the standard login flow.connect_code: used for the connect account flow.
+ Functional AuthGuard to ensure routes can only be accessed when authenticated.
-Note: Should only be used as of Angular 15
-Contains the information about a route associated with a component loaded in an outlet at a particular moment in time.
-Represents the state of the router at a moment in time.
-An Observable, indicating if the route can be accessed or not
-+ Functional AuthGuard to ensure routes can only be accessed + when authenticated. +
+Note: Should only be used as of Angular 15
++ Contains the information about a route associated with + a component loaded in an outlet at a particular moment + in time. +
++ Represents the state of the router at a moment in + time. +
++ An Observable, indicating if the route can be accessed or not +
+ +Functional AuthHttpInterceptor to include the access token in matching requests.
-Note: Should only be used as of Angular 15
-An outgoing HTTP request with an optional typed body.
-Represents the next interceptor in an interceptor chain, or the real backend if there are no -further interceptors.
-An Observable representing the intercepted HttpRequest
-+ Functional AuthHttpInterceptor to include the access token + in matching requests. +
+Note: Should only be used as of Angular 15
++ An outgoing HTTP request with an optional typed body. +
++ Represents the next interceptor in an interceptor + chain, or the real backend if there are no further + interceptors. +
+An Observable representing the intercepted HttpRequest
+ ++ Checks whether an email domain is managed for enterprise SSO + on the given Auth0 tenant. Wraps the auth-js primitive to + inject spa-js telemetry by default. +
++ Tenant domain, e.g. 'tenant.auth0.com'. A leading 'https://' or 'http://' is stripped + automatically. +
++ The email domain to check, e.g. 'acme.com'. +
+Optionaloptions:
+ IsFederatedDomainOptions
+ A custom type guard to help identify route definitions that are actually HttpInterceptorRouteConfig types.
-The route definition type
-+ A custom type guard to help identify route definitions that + are actually HttpInterceptorRouteConfig types. +
+The route definition type
+Initialize the authentication system. Configuration can either be specified here, -or by calling AuthClientConfig.set (perhaps from an APP_INITIALIZER factory function).
-Note: Should only be used as of Angular 15. This function returns EnvironmentProviders
-which ensures it can only be used at the application/environment level and cannot be
-added to a component's providers array (this will result in a compile-time error).
Optionalconfig: AuthConfig
-The optional configuration for the SDK.
-bootstrapApplication(AppComponent, {
providers: [
provideAuth0(),
],
});
+
+
+
+
+
+ provideAuth0 | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Function provideAuth0
+
+
+
+ -
+
+
+
+
+ Initialize the authentication system. Configuration can
+ either be specified here, or by calling AuthClientConfig.set
+ (perhaps from an APP_INITIALIZER factory function).
+
+
+ Note: Should only be used as of Angular 15. This function
+ returns EnvironmentProviders which ensures it
+ can only be used at the application/environment level and
+ cannot be added to a component's providers array (this will
+ result in a compile-time error).
+
+
+
+ Parameters
+
+ -
+
Optionalconfig:
+ AuthConfig
+
+ The optional configuration for the SDK.
+
+
+
+
+
+ Returns
+ EnvironmentProviders
+
+
-
-
+ Angular specific state to be stored before redirect -and any account that the user may have connected to.
-Any custom parameter to be stored in appState
-OptionalconnectedThe connected account information when the user has completed -a connect account flow.
-Optionalresponse_The response type returned from the authentication server.
-OptionaltargetTarget path the app gets routed to after -handling the callback from Auth0 (defaults to '/')
-+ Angular specific state to be stored before redirect and any + account that the user may have connected to. +
+Any custom parameter to be stored in appState
+Optionalconnected+ The connected account information when the user has completed + a connect account flow. +
+Optionalresponse_+ The response type returned from the authentication server. +
+Optionaltarget
+ + Target path the app gets routed to after handling the callback + from Auth0 (defaults to '/') +
+Configuration for the authentication service
-Optional Internalauth0Internal property to send information about the client to the authorization server.
-OptionalauthorizationURL parameters that will be sent back to the Authorization Server. This can be known parameters -defined by Auth0 or custom parameters that you define.
-OptionalauthorizeA maximum number of seconds to wait before declaring background calls to /authorize as failed for timeout -Defaults to 60s.
-OptionalcacheSpecify a custom cache implementation to use for token storage and retrieval. This setting takes precedence over cacheLocation if they are both specified.
OptionalcacheThe location to use when storing cache data. Valid values are memory or localstorage.
-The default setting is memory.
Read more about changing storage options in the Auth0 docs
-The Client ID found on your Application settings page
-OptionalcookieThe domain the cookie is accessible from. If not set, the cookie is scoped to -the current domain, including the subdomain.
-Note: setting this incorrectly may cause silent authentication to stop working -on page load.
-To keep a user logged in across multiple subdomains set this to your
-top-level domain and prefixed with a . (eg: .example.com).
Your Auth0 account domain such as 'example.auth0.com',
-'example.eu.auth0.com' or , 'example.mycompany.com'
-(when using custom domains)
OptionalerrorPath in your application to redirect to when the Authorization server
-returns an error. Defaults to /
OptionalhttpConfiguration for the built-in Http Interceptor, used for -automatically attaching access tokens.
-OptionalhttpSpecify the timeout for HTTP calls using fetch. The default is 10 seconds.
OptionalinteractiveConfigures automatic handling of interactive authentication errors.
-When set, the SDK intercepts mfa_required errors from getTokenSilently()
-and handles them automatically instead of throwing to the caller.
'popup': Opens Universal Login in a popup to complete MFA.
-The original authorizationParams (audience, scope) are preserved.
-On success, the token is returned. On failure, popup errors are thrown.This option only affects getTokenSilently(). Other methods are not affected.
undefined (MFA errors are thrown to the caller)
+
+
+
+
+
+ AuthConfig | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Interface AuthConfig
+
+
+
+ Configuration for the authentication service
+
+
+
+ interface
+ AuthConfig
+ {
auth0Client?:
+ {
env?:
+ {
+ [key:
+ string]:
+ string
+ };
name:
+ string;
version:
+ string;
};
authorizationParams?:
+ ClientAuthorizationParams;
authorizeTimeoutInSeconds?:
+ number;
cache?:
+ ICache;
cacheLocation?:
+ CacheLocation;
clientId:
+ string;
cookieDomain?:
+ string;
domain:
+ string;
enterpriseConnect?:
+ boolean;
errorPath?:
+ string;
httpInterceptor?:
+ HttpInterceptorConfig;
httpTimeoutInSeconds?:
+ number;
interactiveErrorHandler?:
+ "popup";
issuer?:
+ string;
leeway?:
+ number;
legacySameSiteCookie?:
+ boolean;
nowProvider?:
+ ()
+ =>
+ number
+ |
+ Promise<number>;
refreshTokenMode?:
+ RefreshTokenMode;
sessionCheckExpiryDays?:
+ number;
sessionTransferTokenQueryParamName?:
+ string;
skipRedirectCallback?:
+ boolean;
useCookiesForTransactions?:
+ boolean;
useDpop?:
+ boolean;
useFormData?:
+ boolean;
useMrrt?:
+ boolean;
useRefreshTokens?:
+ boolean;
useRefreshTokensFallback?:
+ boolean;
workerUrl?:
+ string;
}
+
+
+ Hierarchy
+
+ -
+ Auth0ClientOptions
+
+ -
+ AuthConfig
+
+
+
+
+
+
+
+
+
+
+
+ Index
+
+
+
+
+ Properties
+
+
+ auth0 Client?
+ authorization Params?
+ authorize Timeout In Seconds?
+ cache?
+ cache Location?
+ client Id
+ cookie Domain?
+ domain
+ enterprise Connect?
+ error Path?
+ http Interceptor?
+ http Timeout In Seconds?
+ interactive Error Handler?
+ issuer?
+ leeway?
+ legacy Same Site Cookie?
+ now Provider?
+ refresh Token Mode?
+ session Check Expiry Days?
+ session Transfer Token Query Param Name?
+ skip Redirect Callback?
+ use Cookies For Transactions?
+ use Dpop?
+ use Form Data?
+ use Mrrt?
+ use Refresh Tokens?
+ use Refresh Tokens Fallback?
+ worker Url?
+
+
+
+
+
+
+
+
+
+
+ Properties
+
+
+
+
+
+ Optional
+ Internalauth0 Client
+
+
+ auth0Client?:
+ {
+ env?:
+ {
+ [key:
+ string]:
+ string
+ };
+ name:
+ string;
+ version:
+ string
+ }
+
+
+
+ Internal property to send information about the client to the
+ authorization server.
+
+
+
+
+
+
+ Optionalauthorization Params
+
+
+ authorizationParams?:
+ ClientAuthorizationParams
+
+
+
+ URL parameters that will be sent back to the Authorization
+ Server. This can be known parameters defined by Auth0 or
+ custom parameters that you define.
+
+
+
+
+
+
+ Optionalauthorize Timeout In Seconds
+
+
+ authorizeTimeoutInSeconds?:
+ number
+
+
+
+ A maximum number of seconds to wait before declaring
+ background calls to /authorize as failed for timeout Defaults
+ to 60s.
+
+
+
+
+
+
+ Optionalcache
+
+
+
+
+ Specify a custom cache implementation to use for token storage
+ and retrieval. This setting takes precedence over
+ cacheLocation if they are both specified.
+
+
+
+
+
+
+ Optionalcache Location
+
+
+ cacheLocation?:
+ CacheLocation
+
+
+
+ The location to use when storing cache data. Valid values are
+ memory or localstorage. The default
+ setting is memory.
+
+
+ Read more about
+ changing storage options in the Auth0 docs
+
+
+
+
+
+
+ client Id
+
+
+ clientId:
+ string
+
+
+ The Client ID found on your Application settings page
+
+
+
+
+
+ Optionalcookie Domain
+
+
+ cookieDomain?:
+ string
+
+
+
+ The domain the cookie is accessible from. If not set, the
+ cookie is scoped to the current domain, including the
+ subdomain.
+
+
+ Note: setting this incorrectly may cause silent authentication
+ to stop working on page load.
+
+
+ To keep a user logged in across multiple subdomains set this
+ to your top-level domain and prefixed with a
+ . (eg: .example.com).
+
+
+
+
+
+
+ domain
+
+
+ domain:
+ string
+
+
+
+ Your Auth0 account domain such as
+ 'example.auth0.com',
+ 'example.eu.auth0.com' or ,
+ 'example.mycompany.com' (when using
+ custom domains)
+
+
+
+
+
+
+ Optionalenterprise Connect
+
+
+ enterpriseConnect?:
+ boolean
+
+
+
+ Set to true when this client drives an Enterprise
+ Connect login (enterprise SSO resolved from the email domain
+ via
+ isFederatedDomain
+ and login_hint).
+
+
+ Enterprise Connect issues no refresh token and resolves the
+ organization from Home Realm Discovery at login. When enabled,
+ the SDK warns at initialization if the configuration
+ contradicts that: useRefreshTokens: true or
+ offline_access in scope (no refresh
+ token is issued) or a static organization (HRD
+ resolves it, and a static value breaks multi-customer setups).
+
+
+ This is a routing/telemetry flag only; it does not by itself
+ change the login flow.
+
+ Default: false
+
+
+
+
+
+ Optionalerror Path
+
+
+ errorPath?:
+ string
+
+
+
+ Path in your application to redirect to when the Authorization
+ server returns an error. Defaults to /
+
+
+
+
+
+
+ Optionalhttp Interceptor
+
+
+
+
+ Configuration for the built-in Http Interceptor, used for
+ automatically attaching access tokens.
+
+
+
+
+
+
+ Optionalhttp Timeout In Seconds
+
+
+ httpTimeoutInSeconds?:
+ number
+
+
+
+ Specify the timeout for HTTP calls using fetch.
+ The default is 10 seconds.
+
+
+
+
+
+
+ Optionalinteractive Error Handler
+
+
+ interactiveErrorHandler?:
+ "popup"
+
+
+
+ Configures automatic handling of interactive authentication
+ errors.
+
+
+ When set, the SDK intercepts mfa_required errors
+ from getTokenSilently() and handles them
+ automatically instead of throwing to the caller.
+
+
+ -
+
'popup': Opens Universal Login in a popup to
+ complete MFA. The original
+ authorizationParams (audience, scope) are
+ preserved. On success, the token is returned. On failure,
+ popup errors are thrown.
+
+
+
+ This option only affects getTokenSilently().
+ Other methods are not affected.
+
+
+
-
-Optionalissuer
-issuer?: string
-The issuer to be used for validation of JWTs, optionally defaults to the domain above
-
-
-Optionalleeway
-leeway?: number
-The value in seconds used to account for clock skew in JWT expirations.
-Typically, this value is no more than a minute or two at maximum.
-Defaults to 60s.
-
-
-Optionallegacy Same Site Cookie
-legacySameSiteCookie?: boolean
-Sets an additional cookie with no SameSite attribute to support legacy browsers
-that are not compatible with the latest SameSite changes.
-This will log a warning on modern browsers, you can disable the warning by setting
-this to false but be aware that some older useragents will not work,
-See https://www.chromium.org/updates/same-site/incompatible-clients
-Defaults to true
-
-
-Optionalnow Provider
-nowProvider?: () => number | Promise<number>
-Modify the value used as the current time during the token validation.
-Note: Using this improperly can potentially compromise the token validation.
-
-
-Optionalrefresh Token Mode
-
-Selects the refresh-token variant used when useRefreshTokens: true.
-Defaults to RefreshTokenMode.Offline.
-
-- RefreshTokenMode.Offline (default): rotating offline refresh tokens (
offline_access).
-- RefreshTokenMode.Online: non-rotating, session-bound Online Refresh Tokens (
online_access).
-
-Online mode requires useRefreshTokens: true and useDpop: true. The
-online_access and offline_access scopes are mutually exclusive.
-
-
-Optionalsession Check Expiry Days
-sessionCheckExpiryDays?: number
-Number of days until the cookie auth0.is.authenticated will expire
-Defaults to 1.
-
-
-Optionalsession Transfer Token Query Param Name
-sessionTransferTokenQueryParamName?: string
-Query parameter name to extract the session transfer token from for Native to Web SSO.
-When set, the SDK automatically extracts the token from the specified URL query
-parameter and includes it as session_transfer_token in authorization requests.
-This enables seamless single sign-on when users transition from a native mobile
-application to a web application.
-After extraction, the token is automatically removed from the URL using
-window.history.replaceState() to prevent accidental reuse on subsequent
-authentication requests.
-Default: undefined (feature disabled)
-Common values:
-
-'session_transfer_token' - Standard parameter name
-'stt' - Shortened version
-- Custom parameter name of your choice
-
-Set to undefined to disable automatic extraction if you prefer to handle
-session transfer tokens manually.
-
-
+
+
+
+
+ Optionalissuer
+
+
+ issuer?:
+ string
+
+
+
+ The issuer to be used for validation of JWTs, optionally
+ defaults to the domain above
+
+
+
+
+
+
+ Optionalleeway
+
+
+ leeway?:
+ number
+
+
+
+ The value in seconds used to account for clock skew in JWT
+ expirations. Typically, this value is no more than a minute or
+ two at maximum. Defaults to 60s.
+
+
+
+
+
+
+ Optionallegacy Same Site Cookie
+
+
+ legacySameSiteCookie?:
+ boolean
+
+
+
+ Sets an additional cookie with no SameSite attribute to
+ support legacy browsers that are not compatible with the
+ latest SameSite changes. This will log a warning on modern
+ browsers, you can disable the warning by setting this to false
+ but be aware that some older useragents will not work, See
+ https://www.chromium.org/updates/same-site/incompatible-clients
+ Defaults to true
+
+
+
+
+
+
+ Optionalnow Provider
+
+
+ nowProvider?:
+ ()
+ =>
+ number
+ |
+ Promise<number>
+
+
+
+ Modify the value used as the current time during the token
+ validation.
+
+
+ Note: Using this improperly can potentially
+ compromise the token validation.
+
+
+
+
+
+
+ Optionalrefresh Token Mode
+
+
+
+
+ Selects the refresh-token variant used when
+ useRefreshTokens: true. Defaults to
+ RefreshTokenMode.Offline.
+
+
+ -
+ RefreshTokenMode.Offline
+ (default): rotating offline refresh tokens
+ (
offline_access).
+
+ -
+ RefreshTokenMode.Online: non-rotating, session-bound Online Refresh Tokens
+ (
online_access).
+
+
+
+ Online mode requires useRefreshTokens: true and
+ useDpop: true. The online_access and
+ offline_access scopes are mutually exclusive.
+
+
+
+
+
+
+ Optionalsession Check Expiry Days
+
+
+ sessionCheckExpiryDays?:
+ number
+
+
+
+ Number of days until the cookie
+ auth0.is.authenticated will expire Defaults to 1.
+
+
+
+
+
+
+ Optionalsession Transfer Token Query Param Name
+
+
+ sessionTransferTokenQueryParamName?:
+ string
+
+
+
+ Query parameter name to extract the session transfer token
+ from for Native to Web SSO.
+
+
+ When set, the SDK automatically extracts the token from the
+ specified URL query parameter and includes it as
+ session_transfer_token in authorization requests.
+ This enables seamless single sign-on when users transition
+ from a native mobile application to a web application.
+
+
+ After extraction, the token is automatically removed from the
+ URL using window.history.replaceState() to
+ prevent accidental reuse on subsequent authentication
+ requests.
+
+
+ Default: undefined (feature
+ disabled)
+
+ Common values:
+
+ -
+
'session_transfer_token' - Standard parameter
+ name
+
+ 'stt' - Shortened version
+ - Custom parameter name of your choice
+
+
+ Set to undefined to disable automatic extraction
+ if you prefer to handle session transfer tokens manually.
+
+
+
-
-Optionalskip Redirect Callback
-skipRedirectCallback?: boolean
-By default, if the page URL has code and state parameters, the SDK will assume they are for
-an Auth0 application and attempt to exchange the code for a token.
-In some cases the code might be for something else (e.g. another OAuth SDK). In these
-instances you can instruct the client to ignore them by setting skipRedirectCallback.
-AuthModule.forRoot({
skipRedirectCallback: window.location.pathname === '/other-callback'
})
+
+
+
+ See
+
+
+ https://auth0.com/docs/authenticate/single-sign-on/native-to-web
+
+
+
+
+
+
+
+ Optionalskip Redirect Callback
+
+
+ skipRedirectCallback?:
+ boolean
+
+
+
+ By default, if the page URL has code and state parameters, the
+ SDK will assume they are for an Auth0 application and attempt
+ to exchange the code for a token. In some cases the code might
+ be for something else (e.g. another OAuth SDK). In these
+ instances you can instruct the client to ignore them by
+ setting skipRedirectCallback.
+
+ AuthModule.forRoot({
skipRedirectCallback: window.location.pathname === '/other-callback'
})
-Note: In the above example, /other-callback is an existing route that will be called
-by any other OAuth provider with a code (or error in case when something went wrong) and state.
-
-
-Optionaluse Cookies For Transactions
-useCookiesForTransactions?: boolean
-If true, the SDK will use a cookie when storing information about the auth transaction while
-the user is going through the authentication flow on the authorization server.
-The default is false, in which case the SDK will use session storage.
-
-
-
-Optionaluse Dpop
-useDpop?: boolean
-If true, DPoP (OAuth 2.0 Demonstrating Proof of Possession, RFC9449)
-will be used to cryptographically bind tokens to this specific browser
-so they can't be used from a different device in case of a leak.
-The default setting is false.
-
-
-Optionaluse Form Data
-useFormData?: boolean
-If true, data to the token endpoint is transmitted as x-www-form-urlencoded data, if false it will be transmitted as JSON. The default setting is true.
-Note: Setting this to false may affect you if you use Auth0 Rules and are sending custom, non-primitive data. If you disable this,
-please verify that your Auth0 Rules continue to work as intended.
-
-
-Optionaluse Mrrt
-useMrrt?: boolean
-If true, the SDK will allow the refreshing of tokens using MRRT
-
-
-Optionaluse Refresh Tokens
-useRefreshTokens?: boolean
-If true, refresh tokens are used to fetch new access tokens from the Auth0 server. If false, the standard technique of using a hidden iframe and the authorization_code grant with prompt=none is used.
-The default setting is false.
-Standard technique relies on cookies. Because browsers increasingly block third-party cookies, it requires a Custom Domain to function reliably. Refresh tokens serve as a fallback for environments where third-party cookies are blocked.
-Using a Custom Domain with this set to false is the most secure and recommended approach.
-Note: Use of refresh tokens must be enabled by an administrator on your Auth0 client application.
-
-
-Optionaluse Refresh Tokens Fallback
-useRefreshTokensFallback?: boolean
-If true, fallback to the technique of using a hidden iframe and the authorization_code grant with prompt=none when unable to use refresh tokens. If false, the iframe fallback is not used and
-errors relating to a failed refresh_token grant should be handled appropriately. The default setting is false.
-Note: There might be situations where doing silent auth with a Web Message response from an iframe is not possible,
-like when you're serving your application from the file system or a custom protocol (like in a Desktop or Native app).
-In situations like this you can disable the iframe fallback and handle the failed refresh_token grant and prompt the user to login interactively with loginWithRedirect or loginWithPopup."
-E.g. Using the file: protocol in an Electron application does not support that legacy technique.
-
-
-
-Example
let token: string;
try {
token = await auth0.getTokenSilently();
} catch (e) {
if (e.error === 'missing_refresh_token' || e.error === 'invalid_grant') {
auth0.loginWithRedirect();
}
}
+
+ Note: In the above example,
+ /other-callback is an existing route that will be
+ called by any other OAuth provider with a
+ code (or error in case when
+ something went wrong) and state.
+
+
+
+
+
+
+ Optionaluse Cookies For Transactions
+
+
+ useCookiesForTransactions?:
+ boolean
+
+
+
+ If true, the SDK will use a cookie when storing
+ information about the auth transaction while the user is going
+ through the authentication flow on the authorization server.
+
+
+ The default is false, in which case the SDK will
+ use session storage.
+
+
+
+
+
+
+
+ Optionaluse Dpop
+
+
+ useDpop?:
+ boolean
+
+
+
+ If true, DPoP (OAuth 2.0 Demonstrating Proof of
+ Possession, RFC9449) will be used to cryptographically bind
+ tokens to this specific browser so they can't be used from a
+ different device in case of a leak.
+
+ The default setting is false.
+
+
+
+
+
+ Optionaluse Form Data
+
+
+ useFormData?:
+ boolean
+
+
+
+ If true, data to the token endpoint is transmitted as
+ x-www-form-urlencoded data, if false it will be transmitted as
+ JSON. The default setting is true.
+
+
+ Note: Setting this to false may
+ affect you if you use Auth0 Rules and are sending custom,
+ non-primitive data. If you disable this, please verify that
+ your Auth0 Rules continue to work as intended.
+
+
+
+
+
+
+ Optionaluse Mrrt
+
+
+ useMrrt?:
+ boolean
+
+
+
+ If true, the SDK will allow the refreshing of
+ tokens using MRRT
+
+
+
+
+
+
+ Optionaluse Refresh Tokens
+
+
+ useRefreshTokens?:
+ boolean
+
+
+
+ If true, refresh tokens are used to fetch new access tokens
+ from the Auth0 server. If false, the standard technique of
+ using a hidden iframe and the
+ authorization_code grant with
+ prompt=none is used. The default setting is
+ false.
+
+
+ Standard technique relies on cookies. Because browsers
+ increasingly block third-party cookies, it requires a Custom
+ Domain to function reliably. Refresh tokens serve as a
+ fallback for environments where third-party cookies are
+ blocked. Using a Custom Domain with this set to
+ false is the most secure and recommended
+ approach.
+
+
+ Note: Use of refresh tokens must be enabled
+ by an administrator on your Auth0 client application.
+
+
+
+
+
+
+ Optionaluse Refresh Tokens Fallback
+
+
+ useRefreshTokensFallback?:
+ boolean
+
+
+
+ If true, fallback to the technique of using a hidden iframe
+ and the authorization_code grant with
+ prompt=none when unable to use refresh tokens. If
+ false, the iframe fallback is not used and errors relating to
+ a failed refresh_token grant should be handled
+ appropriately. The default setting is false.
+
+
+ Note: There might be situations where doing
+ silent auth with a Web Message response from an iframe is not
+ possible, like when you're serving your application from the
+ file system or a custom protocol (like in a Desktop or Native
+ app). In situations like this you can disable the iframe
+ fallback and handle the failed
+ refresh_token grant and prompt the user to login
+ interactively with loginWithRedirect or
+ loginWithPopup."
+
+
+ E.g. Using the file: protocol in an Electron
+ application does not support that legacy technique.
+
+
+
-
-Optionalworker Url
-workerUrl?: string
-If provided, the SDK will load the token worker from this URL instead of the integrated blob. An example of when this is useful is if you have strict
-Content-Security-Policy (CSP) and wish to avoid needing to set worker-src: blob:. We recommend either serving the worker, which you can find in the module
-at <module_path>/dist/auth0-spa-js.worker.production.js, from the same host as your application or using the Auth0 CDN
-https://cdn.auth0.com/js/auth0-spa-js/<version>/auth0-spa-js.worker.production.js.
-Note: The worker is only used when useRefreshTokens: true, cacheLocation: 'memory', and the cache is not custom.
-
-
-
+ Optionalworker
+ If provided, the SDK will load the token worker from this URL
+ instead of the integrated blob. An example of
+ when this is useful is if you have strict
+ Content-Security-Policy (CSP) and wish to avoid needing to set
+ worker-src: blob:. We recommend either serving
+ the worker, which you can find in the module at
+ <module_path>/dist/auth0-spa-js.worker.production.js, from the same host as your application or using the Auth0
+ CDN
+ https://cdn.auth0.com/js/auth0-spa-js/<version>/auth0-spa-js.worker.production.js.
+
+ Note: The worker is only used when
+ useRefreshTokens: true,
+ cacheLocation: 'memory', and the
+ cache is not custom.
+
Optionallast_Optionalname
+ Email enrollment parameters
+Optionalemail
+ + Email address (optional, uses user's email if not provided) +
+The factor type for enrollment
+MFA token from mfa_required error
+OTP (Time-based One-Time Password) enrollment parameters
+Push notification enrollment parameters
+SMS enrollment parameters
+The factor type for enrollment
+MFA token from mfa_required error
+Phone number in E.164 format (required for SMS)
+Voice enrollment parameters
+The factor type for enrollment
+MFA token from mfa_required error
+Phone number in E.164 format (required for voice)
+OptionalauthorizationParameters that will be sent back to Auth0 as part of a request.
-If you need to send custom parameters to the Authorization Server, -make sure to use the original parameter name.
-Optionalaudience?: stringThe audience that was used in the authentication request
-Optionalredirect_uri?: stringThere's no actual redirect when getting a token silently,
-but, according to the spec, a redirect_uri param is required.
-Auth0 uses this parameter to validate that the current origin
-matches the redirect_uri origin when sending the response.
-It must be whitelisted in the "Allowed Web Origins" in your
-Auth0 Application's settings.
Optionalscope?: stringThe scope that was used in the authentication request
-OptionalcacheWhen off, ignores the cache and always sends a
-request to Auth0.
-When cache-only, only reads from the cache and never sends a request to Auth0.
-Defaults to on, where it both reads from the cache and sends a request to Auth0 as needed.
OptionaldetailedIf true, the full response from the /oauth/token endpoint (or the cache, if the cache was used) is returned
-(minus refresh_token if one was issued). Otherwise, just the access token is returned.
The default is false.
OptionaltimeoutA maximum number of seconds to wait before declaring the background /authorize call as failed for timeout -Defaults to 60s.
-Optionalauthorization+ Parameters that will be sent back to Auth0 as part of a + request. +
++ If you need to send custom parameters to the + Authorization Server, make sure to use the original + parameter name. +
+Optionalaudience?: string
+ + The audience that was used in the authentication request +
+Optionalredirect_uri?: string
+
+ There's no actual redirect when getting a token
+ silently, but, according to the spec, a
+ redirect_uri param is required. Auth0 uses
+ this parameter to validate that the current
+ origin matches the
+ redirect_uri origin when
+ sending the response. It must be whitelisted in the
+ "Allowed Web Origins" in your Auth0
+ Application's settings.
+
Optionalscope?: string
+ + The scope that was used in the authentication request +
+Optionalcache
+ When off, ignores the cache and always sends a
+ request to Auth0. Concurrent off calls are not
+ deduplicated — each makes its own request. When
+ cache-only, only reads from the cache and never
+ sends a request to Auth0. Defaults to on, where
+ it both reads from the cache and sends a request to Auth0 as
+ needed.
+
Optionaldetailed
+ If true, the full response from the /oauth/token endpoint (or
+ the cache, if the cache was used) is returned (minus
+ refresh_token if one was issued). Otherwise, just
+ the access token is returned.
+
The default is false.
Optionaltimeout+ A maximum number of seconds to wait before declaring the + background /authorize call as failed for timeout Defaults to + 60s. +
+OptionalauthorizationURL parameters that will be sent back to the Authorization Server. This can be known parameters -defined by Auth0 or custom parameters that you define.
-OptionalcacheWhen off, ignores the cache and always sends a request to Auth0.
-When cache-only, only reads from the cache and never sends a request to Auth0.
-Defaults to on, where it both reads from the cache and sends a request to Auth0 as needed.
Optionalauthorization+ URL parameters that will be sent back to the Authorization + Server. This can be known parameters defined by Auth0 or + custom parameters that you define. +
+Optionalcache
+ When off, ignores the cache and always sends a
+ request to Auth0. When cache-only, only reads
+ from the cache and never sends a request to Auth0. Defaults to
+ on, where it both reads from the cache and sends
+ a request to Auth0 as needed.
+
Configuration for the HttpInterceptor
+Configuration for a single interceptor route
-OptionalallowAllow the HTTP call to be executed anonymously, when no token is available.
-When omitted (or set to false), calls that match the configuration will fail when no token is available.
-OptionalhttpThe HTTP method to match on. If specified, the HTTP method of -the outgoing request will be checked against this. If there is no match, the -Authorization header is not attached.
-The HTTP method name is case-sensitive.
-OptionaltokenThe options that are passed to the SDK when retrieving the -access token to attach to the outgoing request.
-OptionaluriThe URL to test, by supplying the URL to match.
-If test is a match for the current request path from the HTTP client, then
-an access token is attached to the request in the
-"Authorization" header.
If the test does not pass, the request proceeds without the access token attached.
-A wildcard character can be used to match only the start of the URL.
-OptionaluriA function that will be called with the HttpRequest.url value, allowing you to do -any kind of flexible matching.
-If this function returns true, then -an access token is attached to the request in the -"Authorization" header.
-If it returns false, the request proceeds without the access token attached.
-Configuration for a single interceptor route
+Optionalallow+ Allow the HTTP call to be executed anonymously, when no token + is available. +
++ When omitted (or set to false), calls that match the + configuration will fail when no token is available. +
+Optionalhttp+ The HTTP method to match on. If specified, the HTTP method of + the outgoing request will be checked against this. If there is + no match, the Authorization header is not attached. +
+The HTTP method name is case-sensitive.
+Optionaltoken+ The options that are passed to the SDK when retrieving the + access token to attach to the outgoing request. +
+Optionaluri
+
+ The URL to test, by supplying the URL to match. If
+ test is a match for the current request path from
+ the HTTP client, then an access token is attached to the
+ request in the
+ "Authorization" header.
+
+ If the test does not pass, the request proceeds without the + access token attached. +
++ A wildcard character can be used to match only the start of + the URL. +
+Optionaluri+ A function that will be called with the HttpRequest.url value, + allowing you to do any kind of flexible matching. +
++ If this function returns true, then an access token is + attached to the request in the + "Authorization" header. +
++ If it returns false, the request proceeds without the access + token attached. +
+OptionalacrOptionalactThe actor claim, present in ID tokens returned via token exchange responses.
-Identifies the acting party that has been delegated authority to act on behalf
-of the subject. Set via Auth0 Actions using the setActor command.
OptionaladdressOptionalamrOptionalat_OptionalaudOptionalauth_OptionalazpOptionalbirthdateOptionalc_OptionalcnfOptionalemailOptionalemail_OptionalexpOptionalfamily_OptionalgenderOptionalgiven_OptionaliatOptionalissOptionaljtiOptionallocaleOptionalmiddle_OptionalnameOptionalnbfOptionalnicknameOptionalnonceOptionalorg_Optionalorg_Optionalphone_Optionalphone_OptionalpictureOptionalpreferred_OptionalprofileOptionalsession_IPSIE session expiry ceiling (Unix timestamp in seconds). -When present, the SDK will not return tokens after this point in time.
-OptionalsidOptionalsub_Optionalupdated_OptionalwebsiteOptionalzoneinfoOptionalacr
+ Optionalact
+
+ The actor claim, present in ID tokens returned via token
+ exchange responses. Identifies the acting party that has been
+ delegated authority to act on behalf of the subject. Set via
+ Auth0 Actions using the setActor command.
+
Optionaladdress
+ Optionalamr
+ Optionalat_Optionalaud
+ Optionalauth_Optionalazp
+ Optionalbirthdate
+ Optionalc_Optionalcnf
+ Optionalemail
+ Optionalemail_Optionalexp
+ Optionalfamily_Optionalgender
+ Optionalgiven_Optionaliat
+ Optionaliss
+ Optionaljti
+ Optionallocale
+ Optionalmiddle_Optionalname
+ Optionalnbf
+ Optionalnickname
+ Optionalnonce
+ Optionalorg_Optionalorg_Optionalphone_Optionalphone_Optionalpicture
+ Optionalpreferred_Optionalprofile
+ Optionalsession_+ IPSIE session expiry ceiling (Unix timestamp in seconds). When + present, the SDK will not return tokens after this point in + time. +
+Optionalsid
+ Optionalsub_Optionalupdated_Optionalwebsite
+ Optionalzoneinfo
+ Optionalcustom+ MDN Reference +
+Optionalinit:
+ RequestInit
+ Optionaltelemetry
+ OptionalclientThe clientId of your application.
If this property is not set, then the clientId that was used during initialization of the SDK is sent to the logout endpoint.
If this property is set to null, then no client ID value is sent to the logout endpoint.
OptionallogoutParameters to pass to the logout endpoint. This can be known parameters defined by Auth0 or custom parameters -you wish to provide.
-If you need to send custom parameters to the logout endpoint, make sure to use the original parameter name.
-Optionalfederated?: booleanWhen supported by the upstream identity provider, -forces the user to logout of their identity provider -and from Auth0. -Read more about how federated logout works at Auth0
-OptionalreturnTo?: stringThe URL where Auth0 will redirect your browser to after the logout.
-Note: If the client_id parameter is included, the
-returnTo URL that is provided must be listed in the
-Application's "Allowed Logout URLs" in the Auth0 dashboard.
-However, if the client_id parameter is not included, the
-returnTo URL must be listed in the "Allowed Logout URLs" at
-the account level in the Auth0 dashboard.
OptionalopenUsed to control the redirect and not rely on the SDK to do the actual redirect.
-Set to false to disable the redirect, or provide a function to handle the actual redirect yourself.
await auth0.logout({
openUrl(url) {
window.location.replace(url);
}
});
+
+
+
+
+
+ LogoutOptions | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Interface LogoutOptions
+
+
+ interface
+ LogoutOptions
+ {
clientId?:
+ string
+ |
+ null;
logoutParams?:
+ {
federated?:
+ boolean;
returnTo?:
+ string;
[key:
+ string]:
+ any;
};
openUrl?:
+ false
|
+ ((url:
+ string)
+ =>
+ void
+ |
+ Promise<void>);
}
+
+
+ Hierarchy
+
+ -
+ Omit<SPALogoutOptions,
+ "onRedirect">
+
+ -
+ LogoutOptions
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Properties
+
+
+
+
+
+ Optionalclient Id
+
+
+ clientId?:
+ string
+ |
+ null
+
+
+ The clientId of your application.
+
+ If this property is not set, then the
+ clientId that was used during initialization of
+ the SDK is sent to the logout endpoint.
+
+
+ If this property is set to null, then no client
+ ID value is sent to the logout endpoint.
+
+
+
+
+
+
+
+ Optionallogout Params
+
+
+ logoutParams?:
+ {
+ federated?:
+ boolean;
+ returnTo?:
+ string;
+ [key:
+ string]:
+ any
+ }
+
+
+
+ Parameters to pass to the logout endpoint. This can be known
+ parameters defined by Auth0 or custom parameters you wish to
+ provide.
+
+
+
+ Type Declaration
+
+ -
+
+ [key:
+ string]:
+ any
+
+
+
+ If you need to send custom parameters to the logout
+ endpoint, make sure to use the original parameter name.
+
+
+
+ -
+
+ Optionalfederated?: boolean
+
+
+
+ When supported by the upstream identity provider, forces
+ the user to logout of their identity provider and from
+ Auth0.
+ Read more about how federated logout works at
+ Auth0
+
+
+
+ -
+
+ OptionalreturnTo?: string
+
+
+
+ The URL where Auth0 will redirect your browser to after
+ the logout.
+
+
+ Note: If the
+ client_id parameter is included, the
+ returnTo URL that is provided must be
+ listed in the Application's "Allowed Logout
+ URLs" in the Auth0 dashboard. However, if the
+ client_id parameter is not included, the
+ returnTo URL must be listed in the
+ "Allowed Logout URLs" at the account level in
+ the Auth0 dashboard.
+
+
+
+
+
+
+
+
+
+
+ Optionalopen Url
+
+
+ openUrl?:
+ false
+ | ((url:
+ string)
+ =>
+ void
+ |
+ Promise<void>)
+
+
+
+ Used to control the redirect and not rely on the SDK to do the
+ actual redirect.
+
+
+ Set to false to disable the redirect, or provide
+ a function to handle the actual redirect yourself.
+
+
+
-
-
+ Observable-based MFA API client exposed by AuthService.mfa.
This is the Angular counterpart of MfaApiClient from @auth0/auth0-spa-js.
-All methods return Observable instead of Promise.
Initiates an MFA challenge, sending an OOB code via SMS, email, or push, -or preparing for OTP entry. Required for all factor types except OTP, -where it is optional.
-Enrolls a new MFA authenticator (OTP, SMS, Voice, Email, or Push).
-Returns the list of enrolled MFA authenticators for the current user, -filtered by the challenge types stored in the MFA context.
-Returns the available enrollment factors from the stored MFA context. -A non-empty result means the user must enroll before they can authenticate.
-Verifies an MFA challenge and returns raw tokens. The grant type is inferred
-automatically from the provided field: otp, oobCode, or recoveryCode.
-Angular auth state (isAuthenticated$, user$) is not updated automatically —
-call getAccessTokenSilently() afterwards to reflect the new session.
+ Observable-based MFA API client exposed by
+ AuthService.mfa.
+
+ This is the Angular counterpart of MfaApiClient from
+ @auth0/auth0-spa-js. All methods return
+ Observable instead of Promise.
+
+ Initiates an MFA challenge, sending an OOB code via SMS, + email, or push, or preparing for OTP entry. Required for + all factor types except OTP, where it is optional. +
++ Enrolls a new MFA authenticator (OTP, SMS, Voice, Email, + or Push). +
++ Returns the list of enrolled MFA authenticators for the + current user, filtered by the challenge types stored in + the MFA context. +
++ Returns the available enrollment factors from the stored + MFA context. A non-empty result means the user must + enroll before they can authenticate. +
+
+ Verifies an MFA challenge and returns raw tokens. The
+ grant type is inferred automatically from the provided
+ field: otp, oobCode, or
+ recoveryCode. Angular auth state
+ (isAuthenticated$, user$) is
+ not updated automatically — call
+ getAccessTokenSilently() afterwards to
+ reflect the new session.
+
Observable-based MyAccount API client exposed by AuthService.myAccount.
This is the Angular counterpart of MyAccountApiClient from @auth0/auth0-spa-js.
-All methods return Observable instead of Promise.
Starts enrollment of an authentication method.
-Returns a challenge response containing auth_session and type-specific data.
Completes enrollment by verifying the challenge response.
-Returns the created AuthenticationMethod.
Returns a single authentication method by its ID.
-Returns the authenticated user's enrolled authentication methods, -optionally filtered by type.
-Optionaltype: AuthenticationMethodTypeReturns the list of factors with their enabled and enrollment status.
-Updates the specified authentication method (e.g. name, preferred phone method).
-
+ Observable-based MyAccount API client exposed by
+ AuthService.myAccount.
+
+ This is the Angular counterpart of
+ MyAccountApiClient from
+ @auth0/auth0-spa-js. All methods return
+ Observable instead of Promise.
+
+ Starts enrollment of an authentication method. Returns a
+ challenge response containing
+ auth_session and type-specific data.
+
+ Completes enrollment by verifying the challenge
+ response. Returns the created
+ AuthenticationMethod.
+
Returns a single authentication method by its ID.
++ Returns the authenticated user's enrolled authentication + methods, optionally filtered by type. +
+Optionaltype:
+ AuthenticationMethodType
+ + Returns the list of factors with their enabled and + enrollment status. +
++ Updates the specified authentication method (e.g. name, + preferred phone method). +
+Observable-based Passkey API client exposed by AuthService.passkey.
Wraps PasskeyApiClient from @auth0/auth0-spa-js. Both methods handle the
-full WebAuthn flow internally and update Angular auth state on success.
-All methods return Observable instead of Promise.
Authenticates an existing user via passkey assertion.
-Updates isAuthenticated$ and user$ on success.
Optionaloptions: PasskeyLoginOptionsRegisters a new user with a passkey credential.
-Updates isAuthenticated$ and user$ on success.
+ Observable-based Passkey API client exposed by
+ AuthService.passkey.
+
+ Wraps PasskeyApiClient from
+ @auth0/auth0-spa-js. Both methods handle the full
+ WebAuthn flow internally and update Angular auth state on success.
+ All methods return Observable instead of
+ Promise.
+
+ Authenticates an existing user via passkey assertion.
+ Updates isAuthenticated$ and
+ user$ on success.
+
Optionaloptions:
+ PasskeyLoginOptions
+
+ Registers a new user with a passkey credential. Updates
+ isAuthenticated$ and user$ on
+ success.
+
Client for Auth0 Passkey operations.
-Provides 2 public methods:
-signup — Register a new user with a passkey (full flow: challenge → WebAuthn → token exchange)login — Sign in with a passkey (full flow: challenge → WebAuthn → token exchange)// Signup — single call handles everything
const tokens = await auth0.passkey.signup({ email: 'user@example.com' });
// Login — single call handles everything
const tokens = await auth0.passkey.login();
+
+
+
+
+
+ PasskeyApiClient | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Interface PasskeyApiClient
+
+
+
+ Client for Auth0 Passkey operations.
+ Provides 2 public methods:
+
+ -
+
signup — Register a new user with a passkey (full
+ flow: challenge → WebAuthn → token exchange)
+
+ -
+
login — Sign in with a passkey (full flow:
+ challenge → WebAuthn → token exchange)
+
+
+
+
+
+
+ interface
+ PasskeyApiClient
+ {
getLoginChallenge(
options?:
+ PasskeyLoginChallengeOptions,
):
+ Promise<PasskeyLoginChallenge>;
getSignupChallenge(
options:
+ PasskeySignupChallengeOptions,
):
+ Promise<PasskeySignupChallenge>;
getTokenWithPasskey(
options:
+ PasskeyGetTokenOptions,
):
+ Promise<TokenEndpointResponse>;
login(options?:
+ PasskeyLoginOptions):
+ Promise<TokenEndpointResponse>;
signup(options:
+ PasskeySignupOptions):
+ Promise<TokenEndpointResponse>;
}
+
+
+
+
+
+
+
+
+
+
+
+ Methods
+
+
+
+
+
+ get Login Challenge
+
+
+ -
+
+
+
+
Request a passkey login challenge.
+
+ Step 1 of the granular login flow. Returns the auth
+ session and a decoded
+ PublicKeyCredentialRequestOptions. Run the
+ WebAuthn assertion ceremony with publicKey,
+ then hand the resulting credential and
+ authSession to
+ getTokenWithPasskey().
+
+
+
+ Parameters
+
+ -
+
Optionaloptions:
+ PasskeyLoginChallengeOptions
+
+
+ Optional login challenge options
+ (realm/organization)
+
+
+
+
+
+
+ Returns Promise<PasskeyLoginChallenge>
+
+
+ A promise resolving to
+ { authSession, publicKey }
+
-
-interface PasskeyApiClient {
login(options?: PasskeyLoginOptions): Promise<TokenEndpointResponse>;
signup(options: PasskeySignupOptions): Promise<TokenEndpointResponse>;
}
-
-
-
-
-Methods
-
-
-login
-
--
-
-
-
Sign in with an existing passkey.
-Handles the full flow: requests a login challenge, triggers the browser
-WebAuthn assertion ceremony, serializes the result, and exchanges it
-for tokens.
-
-
-Parameters
-
-Optionaloptions: PasskeyLoginOptions
-Optional passkey login options (optional scope/audience/realm/organization)
-
-Returns Promise<TokenEndpointResponse>
A promise that resolves to the token endpoint response containing access/ID tokens
+
+
+
+
+
+
+
+
+ get Signup Challenge
+
+
+ -
+
+ getSignupChallenge(
options:
+ PasskeySignupChallengeOptions,
):
+ Promise<PasskeySignupChallenge>
+
+
+
+ Request a passkey signup challenge.
+
+ Step 1 of the granular signup flow. Returns the auth
+ session and a decoded
+ PublicKeyCredentialCreationOptions. Run the
+ WebAuthn credential creation ceremony with
+ publicKey, then hand the resulting
+ credential and authSession to
+ getTokenWithPasskey().
+
+
+
+ Parameters
+
+ -
+ options:
+ PasskeySignupChallengeOptions
+
+
+ Signup challenge options (user identifier,
+ optional realm/organization/metadata)
+
+
+
+
+
+
+ Returns Promise<PasskeySignupChallenge>
+
+
+ A promise resolving to
+ { authSession, publicKey }
+
-
-
-signup
-
--
-
-
-
Register a new user with a passkey.
-Handles the full flow: requests a signup challenge, triggers the browser
-WebAuthn credential creation ceremony, serializes the result, and exchanges
-it for tokens.
-
-
-Parameters
-
-- options: PasskeySignupOptions
-
Passkey signup options (user identifier, optional scope/audience)
-
-Returns Promise<TokenEndpointResponse>
A promise that resolves to the token endpoint response containing access/ID tokens
+
+
+
+
+
+
+
+
+ get Token With Passkey
+
+
+ -
+
+
+
+
Exchange a signed passkey credential for tokens.
+
+ Step 2 of the granular flow. Serializes the raw
+ PublicKeyCredential produced by the
+ WebAuthn ceremony — either a creation (signup) or an
+ assertion (login) credential — and exchanges it for
+ tokens. The credential type (attestation vs assertion)
+ is detected automatically.
+
+
+
+ Parameters
+
+ -
+ options:
+ PasskeyGetTokenOptions
+
+
+ The auth session, raw credential, and optional
+ realm/organization/scope/audience
+
+
+
+
+
+
+ Returns Promise<TokenEndpointResponse>
+
+ A promise resolving to the token endpoint response
-
-Sign in with an existing passkey.
++ Handles the full flow: requests a login challenge, + triggers the browser WebAuthn assertion ceremony, + serializes the result, and exchanges it for tokens. +
+Optionaloptions:
+ PasskeyLoginOptions
+ + Optional passkey login options (optional + scope/audience/realm/organization) +
++ A promise that resolves to the token endpoint response + containing access/ID tokens +
+ + + +Register a new user with a passkey.
++ Handles the full flow: requests a signup challenge, + triggers the browser WebAuthn credential creation + ceremony, serializes the result, and exchanges it for + tokens. +
++ Passkey signup options (user identifier, optional + scope/audience) +
++ A promise that resolves to the token endpoint response + containing access/ID tokens +
+ + + +OptionalaaguidOptionallast_Optionalrelying_OptionaltransportsOptionaluser_Optionalaaguid
+ Optionallast_Optionalrelying_Optionaltransports
+ Optionaluser_Public key credential creation options returned by signup challenges.
-OptionalauthenticatorOptionaltimeout+ Public key credential creation options returned by signup + challenges. +
+OptionalauthenticatorOptionaltimeout
+ Serialized credential response from the platform WebAuthn API. -All binary fields (rawId, clientDataJSON, etc.) must be base64url-encoded strings.
-OptionalauthenticatorOptionalclient+ Serialized credential response from the platform WebAuthn API. All + binary fields (rawId, clientDataJSON, etc.) must be + base64url-encoded strings. +
+OptionalauthenticatorOptionalclientOptions for requesting a passkey login challenge.
+Response from a passkey login challenge request.
-Response from a passkey login challenge request.
+Public key credential request options returned by login challenges.
-+ Public key credential request options returned by login challenges + (rpId, timeout, userVerification). +
+Response from a passkey signup challenge request.
-Response from a passkey signup challenge request.
+Optionallast_Optionallast_OptionalnameOptionallast_Optionalname
+ OptionalcloseControls whether the SDK automatically closes the popup window.
-true (default): SDK closes the popup automatically after receiving the authorization responsefalse: SDK does not close the popup. The caller is responsible for closing it, including on errors.Setting this to false is useful when you need full control over the popup lifecycle,
-such as in Chrome extensions where closing the popup too early can terminate the
-extension's service worker before authentication completes.
When closePopup: false, you should close the popup in a try/finally block:
const popup = window.open('', '_blank');
try {
await auth0.loginWithPopup({}, { popup, closePopup: false });
} finally {
popup.close();
}
+
+
+
+
+
+ PopupConfigOptions | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Interface PopupConfigOptions
+
+
+ interface
+ PopupConfigOptions
+ {
closePopup?:
+ boolean;
popup?:
+ any;
timeoutInSeconds?:
+ number;
}
+
+
+
+
+
+
+
+
+
+
+
+ Properties
+
+
+
+
+
+ Optionalclose Popup
+
+
+ closePopup?:
+ boolean
+
+
+
+ Controls whether the SDK automatically closes the popup
+ window.
+
+
+ -
+
true (default): SDK closes the popup
+ automatically after receiving the authorization response
+
+ -
+
false: SDK does not close the popup. The caller
+ is responsible for closing it, including on errors.
+
+
+
+ Setting this to false is useful when you need
+ full control over the popup lifecycle, such as in Chrome
+ extensions where closing the popup too early can terminate the
+ extension's service worker before authentication completes.
+
+
+ When closePopup: false, you should close the
+ popup in a try/finally block:
+
+ const popup = window.open('', '_blank');
try {
await auth0.loginWithPopup({}, { popup, closePopup: false });
} finally {
popup.close();
}
-
-
-
-
+
-
-Optionalpopup
-popup?: any
-Accepts an already-created popup window to use. If not specified, the SDK
-will create its own. This may be useful for platforms like iOS that have
-security restrictions around when popups can be invoked (e.g. from a user click event)
-
-
-Optionaltimeout In Seconds
-timeoutInSeconds?: number
-The number of seconds to wait for a popup response before
-throwing a timeout error. Defaults to 60s
-
-
-
+
+ Optionalpopup
+ + Accepts an already-created popup window to use. If not + specified, the SDK will create its own. This may be useful for + platforms like iOS that have security restrictions around when + popups can be invoked (e.g. from a user click event) +
+Optionaltimeout+ The number of seconds to wait for a popup response before + throwing a timeout error. Defaults to 60s +
+Optionallast_Optionalname
+ Optionalmanual_Optionallast_OptionalappOptional application state to persist through the transaction.
-await auth0.connectAccountWithRedirect({
connection: 'google-oauth2',
appState: { returnTo: '/settings' }
});
+
+
+
+
+
+ RedirectConnectAccountOptions | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Interface RedirectConnectAccountOptions<TAppState>
+
+
+ interface
+ RedirectConnectAccountOptions<TAppState
+ =
+ any>
+ {
appState?:
+ TAppState;
authorization_params?:
+ AuthorizationParams;
connection:
+ string;
openUrl?:
+ (url:
+ string)
+ =>
+ Promise<void>;
redirectUri?:
+ string;
scopes?:
+ string[];
}
+
+
+ Type Parameters
+
+ -
+ TAppState =
+ any
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Properties
+
+
+
+
+
+ Optionalapp State
+
+
+
+
+ Optional application state to persist through the transaction.
+
+
+
-
-Optionalauthorization_ params
-
-Additional authorization parameters for the request.
-
-
+
+
+
+
+ Optionalauthorization_ params
+
+
+
+ Additional authorization parameters for the request.
+
+
-
-connection
-connection: string
-The name of the connection to link (e.g. 'google-oauth2').
-
-
-Optionalopen Url
-openUrl?: (url: string) => Promise<void>
-Optional function to handle the redirect URL.
-
-
+
+
+
+
+ connection
+
+
+ connection:
+ string
+
+
+
+ The name of the connection to link (e.g. 'google-oauth2').
+
+
+
+
+
+
+ Optionalopen Url
+
+
+ openUrl?:
+ (url:
+ string)
+ =>
+ Promise<void>
+
+
+ Optional function to handle the redirect URL.
+
+
-
-Optionalredirect Uri
-redirectUri?: string
-The URI to redirect back to after connecting the account.
-
-
-Optionalscopes
-scopes?: string[]
-Array of scopes to request from the Identity Provider during the connect account flow.
-
-
+
+
+
+
+ Optionalredirect Uri
+
+
+ redirectUri?:
+ string
+
+
+ The URI to redirect back to after connecting the account.
+
+
+
+
+
+ Optionalscopes
+
+
+ scopes?:
+ string[]
+
+
+
+ Array of scopes to request from the Identity Provider during
+ the connect account flow.
+
+
+
-
-
+ OptionalappUsed to store state before doing the redirect
-OptionalauthorizationURL parameters that will be sent back to the Authorization Server. This can be known parameters -defined by Auth0 or custom parameters that you define.
-OptionalfragmentUsed to add to the URL fragment before redirecting
-OptionalopenUsed to control the redirect and not rely on the SDK to do the actual redirect.
-const client = new Auth0Client({
openUrl(url) {
window.location.replace(url);
}
});
+
+
+
+
+
+ RedirectLoginOptions | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Interface RedirectLoginOptions<TAppState>
+
+
+ interface
+ RedirectLoginOptions<TAppState>
+ {
appState?:
+ TAppState;
authorizationParams?:
+ AuthorizationParams;
fragment?:
+ string;
openUrl?:
+ (url:
+ string)
+ =>
+ void
+ |
+ Promise<void>;
}
+
+
+ Type Parameters
+
+ -
+ TAppState
+
+
+
+
+ Hierarchy
+
+ -
+ Omit<SPARedirectLoginOptions<TAppState>,
+ "onRedirect">
+
+ -
+ RedirectLoginOptions
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Properties
+
+
+
+
+
+ Optionalapp State
+
+
+
+ Used to store state before doing the redirect
+
+
+
+
+
+ Optionalauthorization Params
+
+
+
+
+ URL parameters that will be sent back to the Authorization
+ Server. This can be known parameters defined by Auth0 or
+ custom parameters that you define.
+
+
+
+
+
+
+ Optionalfragment
+
+
+ fragment?:
+ string
+
+
+ Used to add to the URL fragment before redirecting
+
+
+
+
+
+ Optionalopen Url
+
+
+ openUrl?:
+ (url:
+ string)
+ =>
+ void
+ |
+ Promise<void>
+
+
+
+ Used to control the redirect and not rely on the SDK to do the
+ actual redirect.
+
+
+
-
-
+ Optionallast_Optionalname
+ Optionalmanual_Optionalkey_Optionallast_OptionalnameOptionalpublic_Optionalkey_Optionallast_Optionalname
+ Optionalpublic_Optionalkey_Optionallast_OptionalnameOptionalpublic_Optionalkey_Optionallast_Optionalname
+ Optionalpublic_Defines the type for a route config entry. Can either be:
-Defines the type for a route config entry. Can either be:
+The result returned after a successful account connection redirect.
-Combines the redirect login result (including any persisted app state) -with the complete response from the My Account API.
-The type of application state persisted through the transaction.
-OptionalappState?: TAppStateState stored when the redirect request was made
-The type of response, for connect account it will be connect_code
const result = await auth0.connectAccountWithRedirect(options);
console.log(result.appState); // Access persisted app state
console.log(result.connection); // The connection of the account you connected to.
console.log(result.response_type === 'connect_code'); // The response type will be 'connect_code'
+
+
+
+
+
+ ConnectAccountRedirectResult | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Type Alias ConnectAccountRedirectResult<TAppState>
+
+
+ ConnectAccountRedirectResult:
+ CompleteResponse
+ &
+ {
appState?:
+ TAppState;
response_type:
+ ConnectCode;
}
+
+
+
+ The result returned after a successful account connection redirect.
+
+
+ Combines the redirect login result (including any persisted app
+ state) with the complete response from the My Account API.
+
+
+
+ Type Parameters
+
+ -
+ TAppState =
+ any
+
+
+ The type of application state persisted through the
+ transaction.
+
+
+
+
+
+
+ Type Declaration
+
+ -
+
+ OptionalappState?: TAppState
+
+
+ State stored when the redirect request was made
+
+
+ -
+
+ response_type: ConnectCode
+
+
+
+ The type of response, for connect account it will be
+ connect_code
+
+
+
+
+
+
+
+
+ Example
+
+ const result = await auth0.connectAccountWithRedirect(options);
console.log(result.appState); // Access persisted app state
console.log(result.connection); // The connection of the account you connected to.
console.log(result.response_type === 'connect_code'); // The response type will be 'connect_code'
-
-
-
-
+ The account that has been connected during the connect flow.
-The account that has been connected during the connect flow.
+Options for requesting a passkey signup challenge.
-At least one user identifier (email, username, or phoneNumber) must be provided.
-Which identifiers are accepted depends on what is configured on your database connection.
Options for requesting a passkey signup challenge.
+
+ At least one user identifier (email,
+ username, or phoneNumber) must be
+ provided. Which identifiers are accepted depends on what is
+ configured on your database connection.
+
Optionalrefresh_Optionalscope
+ ConstConstConstInjection token for accessing configuration.
-Use the Inject decorator to access the configuration from a service or component:
class MyService(@Inject(AuthConfigService) config: AuthConfig) {}
+
+
+
+
+
+ AuthConfigService | @auth0/auth0-angular
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+
+ Variable AuthConfigServiceConst
+
+
+
+ Injection token for accessing configuration.
+
+
-
-
+
Navigates to the specified url. The router will be used if one is available, otherwise it falls back -to
-window.history.replaceState.