All skills
onmax avatar

/nuxt-better-auth

@de09c7b official
by Maxonmax/nuxt-skills715 stars
38

Guides authentication in Nuxt apps using @nuxtjs/better-auth. Use when installing or configuring the module, using its client or server APIs, protecting routes, refreshing sessions, or integrating Better Auth plugins.

Use this Skill: https://skilld.dev/gh/onmax/nuxt-skills/nuxt-better-auth

This session only. Nothing lands on disk.

SKILL.md

≈59 tokens always: the name and description. ≈654 when used: this file. ≈4.4k more on demand in 8 files.

Nuxt Better Auth

Use the smallest reference that matches the task.

Pick a reference

Task Read
Install the module, configure environment variables, or create config files references/installation.md
Read client session state, build auth forms, call plugins, or fetch auth-bound data references/client-auth.md
Read or enforce sessions in server handlers, create sessions, or refresh cached session data references/server-auth.md
Protect pages or API routes and configure redirects references/route-protection.md
Register Better Auth plugins and their client companions references/plugins.md
Configure NuxtHub, generated schema, or secondary storage references/database.md
Connect a Nuxt frontend to an external Better Auth server references/client-only.md
Use inferred auth types or add project fields references/types.md

Rules that apply across tasks

  • Confirm the consumer's installed package version supports each API you use. The published skill may be newer than the consumer's lockfile.
  • Enforce protected API reads and mutations server-side with requireUserSession(event). Route rules and page meta also control navigation.
  • Navigate only to validated local redirect paths.
  • In clientOnly mode, do not use local server helpers or expect SSR session hydration.
  • After server-side changes to session payload fields, call refreshSessionCookieCache(event). Wrap custom client auth endpoints that create or change the current session with runWithSessionRefresh().

Before finishing an implementation, run the consumer's typecheck and the narrowest relevant auth test.

Resources

Source: SKILL.md on GitHub

No alerts8d4 checks · Risk SAFE
  • Gen Agent Trust Hub8d

    This skill provides comprehensive documentation and guidance for integrating the @nuxtjs/better-auth module into Nuxt.js applications. It covers installation, client and server-side API usage, database integration with NuxtHub, and route protection strategies. The skill follows security best practices, such as recommending environment variables for secret management and local path validation for redirects. No malicious patterns or security risks were identified.

  • Socket8d

    No alerts

  • Snyk8d

    Risk: LOW · No issues

  • Runlayer7mo

    1/9 files flagged

Signed by skilld at de09c7b. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 2 days ago.

Activeupdated last week
  • Nuxt
  • TypeScript
  • better-auth
  • authentication
  • composables
  • route-protection
  • server-auth
  • nuxthub

README badge

README badge for onmax/nuxt-skills/nuxt-better-auth

Nuxt authentication module built on Better Auth, providing useUserSession composable, server route protection, and plugin integration for login/signup flows. Currently alpha status. Targets Nuxt 4+ apps implementing session-based auth with support for Better Auth plugins like passkey and 2FA.

Generated from the current SKILL.md.

Is this production-ready?
No. The module is in alpha (v0.0.2-alpha.19) and APIs may change. Not recommended for production use.
What versions of Nuxt does this support?
Nuxt 4 and later.
Can I use this with an external auth backend?
Yes, via clientOnly mode. This allows you to connect to auth providers outside Nuxt with CORS handling.
Does this support multi-factor authentication and passkeys?
Yes, through Better Auth plugins for 2FA, passkey, and admin functionality.
How do I protect API routes and pages?
Use `requireUserSession()` on the server side for API routes, and `routeRules` or `definePageMeta` with the `auth` property for page protection.

Generated from the current SKILL.md. These answers refresh after source changes.