Agent skill

Da Auth

by adobe in adobe/skills

Use this when another step needs to call the admin.da.live API, for example before pushing HTML content, listing documents, or triggering a DA preview, and you do not already have a valid DATOKEN in…

Apache-2.0Auto-check passedBackend & APIs

Install Da Auth

skills CLI
$ npx skills add adobe/skills --skill da-auth -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install adobe/skills da-auth --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/adobe/skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/aem/edge-delivery-services/skills/da-auth .claude/skills/da-auth && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
da-auth
GitHub stars
195
Token cost
~1.2k tokens
SKILL.md length
574 words
Files
4
Skills in repo
105
Repo updated
First seen
Licence
Apache-2.0

At a glance

Use this when another step needs to call the admin.da.live API, for example before pushing HTML content, listing documents, or triggering a DA preview, and you do not already have a valid DATOKEN in…

  • Works in 3 steps: Check for a Cached Token → Obtain a Token (login required) → Verify the Token Works
  • Backend & APIs work in your project
  • SKILL.md covers When to Use This Skill, Prerequisites, Related Skills and Step 1: Check for a Cached Token, plus 4 more sections
  • Calls npx, node and npm; reaches admin.da.live; needs DA_TOKEN

What it does

Da Auth is an agent skill from adobe/skills. Use this when another step needs to call the admin.da.live API, for example before pushing HTML content, listing documents, or triggering a DA preview, and you do not already have a valid DATOKEN in scope from an earlier step in the same session. Covers obtaining a valid Adobe IMS access token for the DA (Document Authoring) API.

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files (for example `.releaserc.json`, `CHANGELOG.md` and `package.json`).

It sits in Backend & APIs. It works with Adobe Experience Manager. The repository describes itself as: Adobe Skills for Agents. The licence is Apache-2.0.

When your agent uses it

  • Backend & APIs work in your project

Example prompts

  • “/da-auth”

Requirements

  • Node.js

Workflow steps

3 steps, taken from the step headings in SKILL.md.

  1. Check for a Cached Token
  2. Obtain a Token (login required)
  3. Verify the Token Works

What it can do on your machine

Read from SKILL.md and the folder at commit cbc9952. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npx
    • node
    • npm
    • curl

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • admin.da.live

    Also links to:

    • da.live
    • github.com
    • opensource.adobe.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • DA_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Da Auth loads about 1.2k tokens when it runs. Until then it costs about 85 tokens; SKILL.md has 574 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~85
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from adobe/skills at commit cbc9952, republished under its Apache-2.0 licence (© adobe). 574 words, ~1,224 tokens.

Download SKILL.mdSave it as .claude/skills/da-auth/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.
name
da-auth
description
Use this when another step needs to call the admin.da.live API, for example before pushing HTML content, listing documents, or triggering a DA preview, and you do not already have a valid DA_TOKEN in scope from an earlier step in the same session. Covers obtaining a valid Adobe IMS access token for the DA (Document Authoring) API.
license
Apache-2.0
metadata.version
1.1.0

DA Authentication

Gets a valid Adobe IMS access token and stores it in DA_TOKEN for use in subsequent admin.da.live API calls.

When to Use This Skill

Use this skill whenever you need to call the DA Admin API (admin.da.live) and do not already have a valid token in scope. Common cases:

  • Pushing or updating page content in DA
  • Listing documents in a DA repository
  • Triggering a DA content preview

Do NOT use this skill when:

  • You already obtained a DA_TOKEN earlier in the same session and it has not expired (tokens are valid for ~1 hour with a 60-second buffer)
  • The create-site skill is already handling authentication as part of its own flow
  • A DA MCP server is active in the session — use its authentication tool directly instead

Prerequisites

  • Node.js 18+ installed
  • A browser accessible from the machine (for the OAuth flow)
  • Network access to ims-na1.adobelogin.com
  • create-site — includes its own DA auth step for new site onboarding; do not invoke da-auth separately within that flow
  • content-driven-development — use da-auth before pushing authored content to DA
  • building-blocks — use da-auth if test content needs to be pushed to DA for block development
  • snowflake — invoke da-auth before Phase 5 (round-trip) so $DA_TOKEN is set when snowflake PUTs the converted page to DA
  • da-content — the reference for what to do with $DA_TOKEN once you have it (Source API, preview/publish)

Step 1: Check for a Cached Token

Before triggering a browser login, check whether a valid token is already cached.

bash
DA_TOKEN=$(node -e "
  const fs = require('fs');
  const p = process.env.HOME + '/.aem/da-token.json';
  try {
    const t = JSON.parse(fs.readFileSync(p, 'utf8'));
    if (t.expires_at > Date.now() + 60000) process.stdout.write(t.access_token);
  } catch {}
")

If DA_TOKEN is non-empty, skip to Step 3.

Step 2: Obtain a Token (login required)

Choose the option that fits the environment:

Option A (preferred) — da-auth-helper CLI:

The da-auth-helper tool handles the full IMS OAuth 2.0 implicit flow, caches the token at ~/.aem/da-token.json, and prints the token to stdout.

bash
# Run directly without a global install
DA_TOKEN=$(npx github:adobe-rnd/da-auth-helper token)

If npx is unavailable or slow, install globally first:

bash
npm install -g github:adobe-rnd/da-auth-helper
DA_TOKEN=$(da-auth-helper token)

This opens a browser window. Instruct the user:

Please complete the Adobe IMS login in the browser window that just opened. The token will be captured automatically once you log in.

Success: DA_TOKEN is a non-empty JWT string starting with eyJ.

Show full SKILL.md (229 more words)Show less

Option B — DA MCP server:

If a DA MCP server is configured in the session, use its authentication tool to start the OAuth flow and retrieve the token from the response.

**Option C — Manual paste (last resort):**

I need an Adobe IMS access token to push content to DA. You can copy one from your browser:

  1. Open da.live and log in
  2. Open DevTools → Network tab → find any request to admin.da.live
  3. Copy the Authorization: Bearer <token> value (without the Bearer prefix)
  4. Paste it here

Step 3: Verify the Token Works

Confirm the token is accepted by the DA API before proceeding:

bash
curl -s -o /dev/null -w "%{http_code}" \
  -H "Authorization: Bearer {{DA_TOKEN}}" \
  "https://admin.da.live/list/{{ORG}}/{{REPO}}"

Success: HTTP 200. The token is valid — DA_TOKEN is ready for use by the calling skill.

Troubleshooting

SymptomLikely causeFix
DA_TOKEN is empty after Step 1No cached token or token expiredProceed to Step 2
Browser window does not opennpx / da-auth-helper blocked or headless environmentUse Option B (MCP) or Option C (manual paste)
npx github:adobe-rnd/da-auth-helper failsNetwork restrictions on GitHub package registryUse Option B (DA MCP server) or Option C (manual token paste)
Step 3 returns 401Token expired between stepsRe-run Step 2 to refresh
Step 3 returns 403Authenticated user lacks access to {{ORG}}/{{REPO}}Ask the user to verify their DA permissions for that org/repo

Reference

© adobe, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 3 other files in plugins/aem/edge-delivery-services/skills/da-auth of adobe/skills.

  • SKILL.md
  • .releaserc.json
  • CHANGELOG.md
  • package.json

Open the folder on GitHubat commit cbc9952

Compare with similar skills

Da Auth next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Da Auth compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Da Auth this skilladobe/skills195—~1.2kAutomated safety check: PassApache-2.0
Content Management Systemsgithub/awesome-copilot40k1 repos~1.3kAutomated safety check: PassMIT
Appbuilder E2E TestingNeverSight/learn-skills.dev2161 repos~1.8kAutomated safety check: PassApache-2.0
Configuring Horizoncoollabsio/coolify63k4 repos~898Automated safety check: PassMIT
Nestjs Best Practicesrolling-scopes/rsschool-app10k6 repos~1.2kAutomated safety check: PassMIT
Sub2API AdminWei-Shaw/sub2api43k1 repos~717Automated safety check: PassLGPL-3.0

Similar skills

  • Content Management Systems

    github/awesome-copilot

    Official

    Workflow for building and modifying content management systems across WordPress, Shopify, Wix, Squarespace, Drupal, WooCommerce, Joomla, HubSpot CMS Hub, Webflow, Adobe Experience Manager, and…

    40k GitHub starsUsed in 1 repo~1.3k tokens
    Sales & SupportAuto-check passed
  • Appbuilder E2E Testing

    NeverSight/learn-skills.dev

    A skill your agent uses whenever the user wants browser-based end-to-end tests for an Adobe App Builder application.

    216 GitHub starsUsed in 1 repo~1.8k tokens
    Testing & QAAuto-check passed
  • Configuring Horizon

    coollabsio/coolify

    A skill your agent uses whenever the user mentions Horizon by name in a Laravel context.

    63k GitHub starsUsed in 4 repos~898 tokens
    Backend & APIsAuto-check passed
  • Nestjs Best Practices

    rolling-scopes/rsschool-app

    NestJS best practices and architecture patterns for building production-ready applications.

    10k GitHub starsUsed in 6 repos~1.2k tokens
    Backend & APIsAuto-check passed
  • Sub2API Admin

    Wei-Shaw/sub2api

    Manages a Sub2API deployment from the command line: accounts, redeem and invitation codes, groups, proxies, imports, exports and raw admin API calls.

    43k GitHub starsUsed in 1 repo~717 tokens
    Backend & APIsAuto-check passed
  • Firecrawl Build Onboarding

    firecrawl/firecrawl

    Gets Firecrawl working in a project: signs you in through the browser, saves FIRECRAWL_API_KEY to .env and picks the first SDK or REST path.

    189k GitHub starsUsed in 1 repo~1.4k tokens
    Backend & APIsAuto-check: notes

More from adobe/skills

All 105 skills in this repo
  • Scaffolds, implements, deploys and debugs Adobe Runtime actions in App Builder projects, with templates for webhooks, events, database CRUD, sequences and Asset Compute workers.

    195 GitHub stars~3.1k tokensUpdated yesterday
    Auto-check passed
  • Launches Chrome with an unpacked extension over CDP, opens its sidepanel, popup or options page, and hands over to cdp-connect for clicks, typing and screenshots.

    195 GitHub stars~952 tokensUpdated yesterday
    Auto-check passed
  • Extracts icons, metadata, text, forms, videos and social links from any web page with playwright-cli, with SVG icon classification and cleanup.

    195 GitHub stars~1k tokensUpdated yesterday
    Auto-check passed
  • Page Langs

    adobe/skills

    Detect all languages used on a webpage — both declared (html@lang, hreflang alternate links, nested lang= attributes, meta content-language) and actually present in the body text (Google CLD3 via…

    195 GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed
  • Page Prep

    adobe/skills

    Prepare any webpage for clean interaction by detecting and removing disruptive overlays (cookie banners, GDPR consent, modals, popups, newsletter signups, paywalls, login walls).

    195 GitHub stars~2.1k tokensUpdated yesterday
    Auto-check passed
  • Page Reduce

    adobe/skills

    Reduce a webpage to a structural skeleton with semantic tokens.

    195 GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Da Auth

What does Da Auth do?

Use this when another step needs to call the admin.da.live API, for example before pushing HTML content, listing documents, or triggering a DA preview, and you do not already have a valid DATOKEN in…. Da Auth is an agent skill from adobe/skills.live API, for example before pushing HTML content, listing documents, or triggering a DA preview, and you do not already have a valid DATOKEN in scope from an earlier step in the same session.

When should I use Da Auth?

Da Auth fits situations like: backend & APIs work in your project.

How do I install Da Auth in Claude Code?

Run `npx skills add adobe/skills --skill da-auth -a claude-code`. Or copy the skill folder (plugins/aem/edge-delivery-services/skills/da-auth in adobe/skills) into .claude/skills/da-auth in your project. Claude Code loads it when a task matches its description.

How do I install Da Auth in Codex?

Run `npx skills add adobe/skills --skill da-auth -a codex`. Or copy the skill folder (plugins/aem/edge-delivery-services/skills/da-auth in adobe/skills) into .agents/skills/da-auth in your project. Codex loads it when a task matches its description.

Can I use Da Auth in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add adobe/skills --skill da-auth -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/da-auth, .gemini/skills/da-auth, .github/skills/da-auth and .opencode/skills/da-auth in your project.

What does Da Auth need to run?

Going by SKILL.md and its folder, Da Auth needs the command-line tools its instructions call (npx, node, npm and curl) and credentials named DA_TOKEN. Our summary lists: Node.js.

Does Da Auth access the network?

SKILL.md names 4 domains. In commands or code: admin.da.live; the agent is likely to contact it when it follows the instructions. As links in the text: da.live, github.com and opensource.adobe.com. This is read from the text; nothing was executed.

Is Da Auth safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Da Auth use?

Da Auth is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Da Auth use?

About 1.2k tokens (SKILL.md is roughly 4.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Da Auth?

Skills that share tags, products or a category with Da Auth: Content Management Systems (github/awesome-copilot, 40k stars), Appbuilder E2E Testing (NeverSight/learn-skills.dev, 216 stars), Configuring Horizon (coollabsio/coolify, 63k stars) and Nestjs Best Practices (rolling-scopes/rsschool-app, 10k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Da Auth?

adobe (a GitHub organization) maintains it in adobe/skills, which has 195 GitHub stars. The repository holds 105 skills in this directory. The repository was last updated on October 6, 2026.

Source: adobe/skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.