Implement authentication in Databricks Apps: get current user info, on-behalf-of-user (OBO) auth, service principal auth, and OAuth patterns.

Custom licenceAuto-check passedBackend & APIs

Install Cookbook Authentication

skills CLI
$ npx skills add databricks-solutions/databricks-apps-cookbook --skill cookbook-authentication -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install databricks-solutions/databricks-apps-cookbook cookbook-authentication --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/databricks-solutions/databricks-apps-cookbook.git skills-src && mkdir -p .claude/skills && cp -r skills-src/databricks-skills/authentication .claude/skills/cookbook-authentication && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
cookbook-authentication
GitHub stars
183
Token cost
~1.8k tokens
SKILL.md length
314 words
Files
1
Skills in repo
12
Repo updated
First seen
Licence
Custom licence

At a glance

Implement authentication in Databricks Apps: get current user info, on-behalf-of-user (OBO) auth, service principal auth, and OAuth patterns.

  • The user asks about auth
  • SKILL.md covers Recipes, Available HTTP Headers, Enabling OBO and Resources, plus 3 more sections
  • Calls databricks; reaches workspace.cloud.databricks.com; needs DATABRICKS_CLIENT_SECRET
  • Service principals

What it does

Cookbook Authentication is an agent skill from databricks-solutions/databricks-apps-cookbook. Implement authentication in Databricks Apps: get current user info, on-behalf-of-user (OBO) auth, service principal auth, and OAuth patterns. Use when the user asks about auth, user tokens, service principals, OAuth, or OBO in Dash, Streamlit, Reflex, or FastAPI.

Its SKILL.md is about 1.8k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Authentication, Backend development and OAuth and OpenID Connect. It works with Databricks, FastAPI, Streamlit and SQL. The repository describes itself as: Ready-to-use code snippets for building interactive Databricks Apps.

When your agent uses it

  • The user asks about auth
  • Service principals

Example prompts

  • “/cookbook-authentication”

Requirements

  • Python 3
  • A credential in DATABRICKS_CLIENT_SECRET

What it can do on your machine

Read from SKILL.md and the folder at commit 4018368. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • databricks

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • workspace.cloud.databricks.com

    Also links to:

    • docs.databricks.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • DATABRICKS_CLIENT_SECRET

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Cookbook Authentication loads about 1.8k tokens when it runs. Until then it costs about 72 tokens; SKILL.md has 314 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~72
When it runs · the whole SKILL.md, loaded when a task matches
~1.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 314 words (~1,764 tokens).

“Databricks Apps supports two auth models: app auth (service principal) and user auth (on-behalf-of-user). Choose based on whether operations should run as the app or as the logged-in user.”

— opening of SKILL.md by databricks-solutions, Custom licence
name
cookbook-authentication

Read the full SKILL.md on GitHub

Files

Just SKILL.md in databricks-skills/authentication of databricks-solutions/databricks-apps-cookbook.

Open the folder on GitHubat commit 4018368

Compare with similar skills

Cookbook Authentication next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Cookbook Authentication compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Cookbook Authentication this skilldatabricks-solutions/databricks-apps-cookbook183—~1.8kAutomated safety check: PassCustom licence
Databricks Apps Pythondatabricks/databricks-agent-skills345—~3kAutomated safety check: PassCustom licence
Fastapi ItechmeatKilo-Org/kilo-marketplace189—~1.5kAutomated safety check: PassMIT
JWT Authaiskillstore/marketplace430—~1.2kAutomated safety check: PassNone
Fastapi Masteryaiskillstore/marketplace430—~1.1kAutomated safety check: PassNone
Fortify Developmentcoollabsio/coolify63k4 repos~1.9kAutomated safety check: PassMIT

Similar skills

  • Databricks Apps Python

    databricks/databricks-agent-skills

    Official

    Python backend for Databricks Apps — FastAPI (default), Flask, Dash, Streamlit, Gradio, Reflex.

    345 GitHub stars~3k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Fastapi Itechmeat

    Kilo-Org/kilo-marketplace

    FastAPI Python framework. An agent skill from Kilo-Org/kilo-marketplace.

    189 GitHub stars~1.5k tokensUpdated 9 days ago
    Backend & APIsAuto-check passed
  • JWT Auth

    aiskillstore/marketplace

    A skill your agent uses when implementing JWT authentication in FastAPI or Python projects.

    430 GitHub stars~1.2k tokensUpdated today
    Backend & APIsAuto-check passed
  • Fastapi Mastery

    aiskillstore/marketplace

    Comprehensive FastAPI development skill covering REST API creation, routing, request/response handling, validation, authentication, database integration, middleware, and deployment.

    430 GitHub stars~1.1k tokensUpdated today
    Backend & APIsAuto-check passed
  • Fortify Development

    coollabsio/coolify

    ACTIVATE when the user works on authentication in Laravel. An agent skill from coollabsio/coolify.

    63k GitHub starsUsed in 4 repos~1.9k tokens
    Backend & APIsAuto-check passed
  • Arch Wiki

    ahmedemad3/arch-wiki

    Scans any project codebase for new/changed modules, endpoints, middleware, infrastructure, Docker topologies, SQL queries, or permissions and updates docs/architecture/architecture.json.

    249 GitHub stars~5.1k tokensUpdated 18 days ago
    Backend & APIsAuto-check passed

More from databricks-solutions/databricks-apps-cookbook

All 12 skills in this repo
  • Cookbook Aiml

    databricks-solutions/databricks-apps-cookbook

    Invoke ML models, run vector search, and connect to MCP servers from Databricks Apps.

    183 GitHub stars~1.7k tokensUpdated 3 days ago
    Auto-check passed
  • Cookbook Bi

    databricks-solutions/databricks-apps-cookbook

    Embed AI/BI dashboards and integrate Genie Spaces into Databricks Apps.

    183 GitHub stars~1.5k tokensUpdated 3 days ago
    Auto-check passed
  • Cookbook Compute

    databricks-solutions/databricks-apps-cookbook

    Connect Databricks Apps to shared clusters or serverless compute using Databricks Connect.

    183 GitHub stars~790 tokensUpdated 3 days ago
    Auto-check passed
  • Cookbook External Services

    databricks-solutions/databricks-apps-cookbook

    Connect Databricks Apps to external services using Unity Catalog HTTP connections and retrieve Databricks secrets.

    183 GitHub stars~1.1k tokensUpdated 3 days ago
    Auto-check passed
  • Cookbook Tables

    databricks-solutions/databricks-apps-cookbook

    Read and write Delta tables and connect to Lakebase (OLTP PostgreSQL) from Databricks Apps.

    183 GitHub stars~1.9k tokensUpdated 3 days ago
    Auto-check passed
  • Cookbook Unity Catalog

    databricks-solutions/databricks-apps-cookbook

    Browse Unity Catalog objects (catalogs, schemas) from Databricks Apps.

    183 GitHub stars~899 tokensUpdated 3 days ago
    Auto-check passed

Categories

Questions about Cookbook Authentication

What does Cookbook Authentication do?

Implement authentication in Databricks Apps: get current user info, on-behalf-of-user (OBO) auth, service principal auth, and OAuth patterns. Cookbook Authentication is an agent skill from databricks-solutions/databricks-apps-cookbook. Implement authentication in Databricks Apps: get current user info, on-behalf-of-user (OBO) auth, service principal auth, and OAuth patterns.

When should I use Cookbook Authentication?

Cookbook Authentication fits situations like: the user asks about auth; service principals.

How do I install Cookbook Authentication in Claude Code?

Run `npx skills add databricks-solutions/databricks-apps-cookbook --skill cookbook-authentication -a claude-code`. Or copy the skill folder (databricks-skills/authentication in databricks-solutions/databricks-apps-cookbook) into .claude/skills/cookbook-authentication in your project. Claude Code loads it when a task matches its description.

How do I install Cookbook Authentication in Codex?

Run `npx skills add databricks-solutions/databricks-apps-cookbook --skill cookbook-authentication -a codex`. Or copy the skill folder (databricks-skills/authentication in databricks-solutions/databricks-apps-cookbook) into .agents/skills/cookbook-authentication in your project. Codex loads it when a task matches its description.

Can I use Cookbook Authentication in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add databricks-solutions/databricks-apps-cookbook --skill cookbook-authentication -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/cookbook-authentication, .gemini/skills/cookbook-authentication, .github/skills/cookbook-authentication and .opencode/skills/cookbook-authentication in your project.

What does Cookbook Authentication need to run?

Going by SKILL.md and its folder, Cookbook Authentication needs the command-line tools its instructions call (databricks) and credentials named DATABRICKS_CLIENT_SECRET. Our summary lists: Python 3; A credential in DATABRICKS_CLIENT_SECRET.

Does Cookbook Authentication access the network?

SKILL.md names 2 domains. In commands or code: workspace.cloud.databricks.com; the agent is likely to contact it when it follows the instructions. As links in the text: docs.databricks.com. This is read from the text; nothing was executed.

Is Cookbook Authentication safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Cookbook Authentication use?

Cookbook Authentication has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.

How many tokens does Cookbook Authentication use?

About 1.8k tokens (SKILL.md is roughly 7.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Cookbook Authentication?

Skills that share tags, products or a category with Cookbook Authentication: Databricks Apps Python (databricks/databricks-agent-skills, 345 stars), Fastapi Itechmeat (Kilo-Org/kilo-marketplace, 189 stars), JWT Auth (aiskillstore/marketplace, 430 stars) and Fastapi Mastery (aiskillstore/marketplace, 430 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Cookbook Authentication?

databricks-solutions (a GitHub organization) maintains it in databricks-solutions/databricks-apps-cookbook, which has 183 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on October 4, 2026.

Source: databricks-solutions/databricks-apps-cookbook on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.