smithery/rimblehelm

maui-authentication

A brief description of what this skill does

Installation

$ npx skills add smithery/rimblehelm --skill maui-authentication

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from smithery/rimblehelm.

npx skills add smithery/rimblehelm

Browse all from smithery/rimblehelm

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 2,074 B
  • docs SUMMARY.md 70 B

History

  1. First recorded snapshot · 0 installs

SKILL.md

.NET MAUI — Authentication Skill

Purpose

This skill provides agents with secure, cross-platform patterns for implementing authentication in .NET MAUI applications. It covers OAuth2, OpenID Connect, JWT handling, secure storage, token refresh, and platform-specific login flows using WebAuthenticator.

The goal is to ensure that all authentication-related code is safe, maintainable, and aligned with modern security practices.

Core Principles

  1. Security first

Never store sensitive data in Preferences or plain text. Always use SecureStorage.

  1. Use platform-native authentication flows

- iOS/macOS: ASWebAuthenticationSession - Android: Chrome Custom Tabs - Windows: System browser

  1. Token lifecycle management

Always implement refresh token logic and expiration checks.

  1. Abstraction

Wrap authentication logic in services and interfaces to keep UI clean.

  1. Least privilege

Request only the scopes required for the app.

Supported Authentication Patterns

  • OAuth2 Authorization Code Flow (recommended)
  • OpenID Connect (OIDC)
  • JWT-based APIs
  • Custom backend authentication
  • Social logins (Google, Microsoft, Apple)

Recommended Architecture

Services
└─ Auth
   ├─ Interfaces
   └─ Models

Agent Usage Guidelines

  • When generating authentication code, always:

- Use WebAuthenticator.Default.AuthenticateAsync for login. - Store tokens in SecureStorage. - Implement IAuthService and AuthService. - Provide IsLoggedIn, LoginAsync, LogoutAsync, and RefreshTokenAsync.

  • When asked to “add login,” generate:

- A LoginPage + LoginViewModel - AuthService + interface - Token models - SecureStorage helpers

  • When asked to “secure an API call,” apply:

- Bearer token injection - Expiration checks - Automatic refresh

Out of Scope

  • UI styling (covered in maui-ui-best-practices)
  • Backend implementation details
  • Deployment configuration