Install the "auth-nodejs-cloudbase" agent skill from https://github.com/majiayu000/claude-skill-registry/tree/main/skills/api/auth-nodejs-baiyongping-cowork-platform-2 into .claude/skills/auth-nodejs-cloudbase/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "auth-nodejs-cloudbase", then confirm the skill loads.
Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Type this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
skills CLI
$ npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a codex
Project install goes to .agents/skills/; add -g for ~/.codex/skills/.
Install the "auth-nodejs-cloudbase" agent skill from https://github.com/majiayu000/claude-skill-registry/tree/main/skills/api/auth-nodejs-baiyongping-cowork-platform-2 into .agents/skills/auth-nodejs-cloudbase/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "auth-nodejs-cloudbase", then confirm the skill loads.
Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a cursor
Project install goes to .agents/skills/; add -g for ~/.cursor/skills/.
Install the "auth-nodejs-cloudbase" agent skill from https://github.com/majiayu000/claude-skill-registry/tree/main/skills/api/auth-nodejs-baiyongping-cowork-platform-2 into .cursor/skills/auth-nodejs-cloudbase/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "auth-nodejs-cloudbase", then confirm the skill loads.
Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
skills CLI
$ npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a gemini-cli
Project install goes to .agents/skills/; add -g for ~/.gemini/skills/.
Install the "auth-nodejs-cloudbase" agent skill from https://github.com/majiayu000/claude-skill-registry/tree/main/skills/api/auth-nodejs-baiyongping-cowork-platform-2 into .gemini/skills/auth-nodejs-cloudbase/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "auth-nodejs-cloudbase", then confirm the skill loads.
Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Installs for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
skills CLI
$ npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a github-copilot
Project install goes to .agents/skills/; add -g for ~/.copilot/skills/.
Install the "auth-nodejs-cloudbase" agent skill from https://github.com/majiayu000/claude-skill-registry/tree/main/skills/api/auth-nodejs-baiyongping-cowork-platform-2 into .github/skills/auth-nodejs-cloudbase/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "auth-nodejs-cloudbase", then confirm the skill loads.
GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
skills CLI
$ npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a opencode
OpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
Install the "auth-nodejs-cloudbase" agent skill from https://github.com/majiayu000/claude-skill-registry/tree/main/skills/api/auth-nodejs-baiyongping-cowork-platform-2 into .opencode/skills/auth-nodejs-cloudbase/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "auth-nodejs-cloudbase", then confirm the skill loads.
OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
Facts
Skill name
auth-nodejs-cloudbase
GitHub stars
666
Used in
2 other repos
Token cost
~3.8k tokens
SKILL.md length
1,618 words
Files
2
Skills in repo
971
Repo updated
First seen
Licence
MIT
At a glance
Complete guide for CloudBase Auth using the CloudBase Node SDK – caller identity, user lookup, custom login tickets, and server-side best practices.
Works in 5 steps: Clarify the runtime and responsibility → Confirm CloudBase environment and SDK → Pick the relevant scenario from this file → …
Tasks that involve Backend development
SKILL.md covers When to use this skill, How to use this skill (for a…, Node auth architecture – how… and Node Auth APIs covered by this…, plus 4 more sections
Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
What it does
Auth Nodejs Cloudbase is an agent skill from majiayu000/claude-skill-registry. Complete guide for CloudBase Auth using the CloudBase Node SDK – caller identity, user lookup, custom login tickets, and server-side best practices.
Its SKILL.md is about 3.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 1 other file (for example `metadata.json`).
It sits in Backend & APIs, covering Backend development. It works with Node.js. The repository describes itself as: Searchable Claude Code skills catalog with source-linked guides and generated registry artifacts. The licence is MIT.
When your agent uses it
Tasks that involve Backend development
Example prompts
“/auth-nodejs-cloudbase”
Requirements
Node.js
Workflow steps
5 steps, taken from the first numbered list in SKILL.md.
1Clarify the runtime and responsibility
2Confirm CloudBase environment and SDK
3Pick the relevant scenario from this file
4Follow Node SDK API shapes exactly
5If you are unsure about an API
What it can do on your machine
Read from SKILL.md and the folder at commit 000116a. It shows what the files ask for, not the result of running them.
Tool permissions
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Runs code
No scripts in the folder and no shell commands in SKILL.md (its code samples are typescript).
From the folder's file list and the shell code blocks in SKILL.md.
Network
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Credentials
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Context cost
Auth Nodejs Cloudbase loads about 3.8k tokens when it runs. Until then it costs about 43 tokens; SKILL.md has 1,618 words of instructions outside code blocks.
Always· name and description, kept in context so the agent knows when to use it
~43
When it runs· the whole SKILL.md, loaded when a task matches
~3.8k
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
Safety
Auto-check passed
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
Download SKILL.mdSave it as .claude/skills/auth-nodejs-cloudbase/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
auth-nodejs-cloudbase
description
Complete guide for CloudBase Auth using the CloudBase Node SDK – caller identity, user lookup, custom login tickets, and server-side best practices.
alwaysApply
false
When to use this skill
Use this skill whenever the task involves server-side authentication or identity in a CloudBase project, and the code is running in Node.js, for example:
CloudBase 云函数 (Node runtime) that needs to know who is calling
Node services that use CloudBase Node SDK to look up user information
Backends that issue custom login tickets for Web / mobile clients
Admin or ops tools that need to inspect CloudBase end-user profiles
Do NOT use this skill for:
Frontend Web login / sign-up flows using @cloudbase/js-sdk (handle those with the CloudBase Web Auth skill at skills/web-auth-skill, not this Node skill).
Direct HTTP auth API integrations (this skill does not describe raw HTTP endpoints; use the CloudBase HTTP Auth skill at skills/auth-http-api-skill instead).
Database or storage operations that do not involve identity (use database/storage docs or skills).
When the user request mixes frontend and backend concerns (e.g. "build a web login page and a Node API that knows the user"), treat them separately:
Use Web-side auth docs/skills for client login and UX.
Use this Node Auth skill for how the backend sees and uses the authenticated user.
How to use this skill (for a coding agent)
When you load this skill to work on a task:
Clarify the runtime and responsibility
Ask the user:
Where does this Node code run?
CloudBase 云函数
Long‑running Node service using CloudBase
What do they need from auth?
Just the caller identity for authorization?
Look up arbitrary users by UID / login identifier?
Bridge their own user system into CloudBase via custom login?
Confirm CloudBase environment and SDK
Ask for:
env – CloudBase environment ID
Install the latest @cloudbase/node-sdk from npm if it is not already available.
Always initialize the SDK using this pattern (values can change, shape must not):
For caller identity inside a function, use the getUserInfo scenarios.
For full user profile or admin lookup, use the getEndUserInfo and queryUserInfo scenarios.
For client systems that already have their own users, use the custom login ticket scenarios built on createTicket.
For logging / security, use the getClientIP scenario.
Follow Node SDK API shapes exactly
Treat all auth.* methods and parameter shapes in this file as canonical.
You may change variable names and framework (e.g. Express vs 云函数 handler), but do not change SDK method names or parameter fields.
If you see a method in older code that is not listed here or in the Node SDK docs mirror, treat it as suspect and avoid using it.
If you are unsure about an API
Consult the official CloudBase Auth Node SDK documentation.
Only use methods and shapes that appear in the official documentation.
If you cannot find an API you want:
Prefer composing flows from the documented methods, or
Explain that this skill only covers Node SDK auth, and suggest using the relevant CloudBase Web or HTTP auth documentation for client-side or raw-HTTP flows.
Node auth architecture – how Node fits into CloudBase Auth
CloudBase Auth v2 separates where users log in from where backend code runs:
Users log in through the supported auth methods (anonymous, username/password, SMS, email, WeChat, custom login, etc.) using client SDKs or HTTP interfaces, as described in the official CloudBase Auth overview documentation.
Once logged in, CloudBase attaches the user identity and tokens to the environment.
Node code then reads that identity using the Node SDK, or bridges external identities into CloudBase using custom login.
In practice, Node code usually does one or more of:
Identify the current caller
In 云函数, use auth.getUserInfo() to read uid, openId, and customUserId.
Use this identity for authorization decisions, logging, and personalisation.
Look up other users
Use auth.getEndUserInfo(uid) when you know the CloudBase uid.
Use auth.queryUserInfo({ platform, platformId, uid? }) when you only have login identifiers such as phone, email, username, or a custom ID.
Issue custom login tickets
When you already have your own user system, your Node backend can call auth.createTicket(customUserId, options) and return the ticket to a trusted client.
The client (typically Web) then uses this ticket with the Web SDK to log the user into CloudBase without forcing them to sign up again.
Log client IP for security
In 云函数, auth.getClientIP() returns the caller IP, which you can use for audit logs, anomaly detection, or access control.
The scenarios later in this file turn these responsibilities into explicit, copy‑pasteable patterns.
Node Auth APIs covered by this skill
This skill covers the following auth methods on the CloudBase Node SDK. Treat these method signatures as the only supported entry points for Node auth flows when using this skill:
getUserInfo(): IGetUserInfoResult
Returns { openId, appId, uid, customUserId } for the current caller.
getEndUserInfo(uid?: string, opts?: ICustomReqOpts): Promise<{ userInfo: EndUserInfo; requestId?: string }>
Returns detailed CloudBase end‑user profile for a given uid or for the current caller (when uid is omitted).
queryUserInfo(query: IUserInfoQuery, opts?: ICustomReqOpts): Promise<{ userInfo: EndUserInfo; requestId?: string }>
Finds a user by login identifier (platform + platformId) or uid.
getClientIP(): string
Returns the caller’s IP address when running in a supported environment (e.g. 云函数).
createTicket(customUserId: string, options?: ICreateTicketOpts): string
Creates a custom login ticket for the given customUserId that clients can exchange for a CloudBase login.
The exact field names and allowed values for EndUserInfo, IUserInfoQuery, and ICreateTicketOpts are defined by the official CloudBase Node SDK typings and documentation. When writing Node code, do not guess shapes; follow the SDK types and the examples in this file.
Scenarios – Node auth patterns
Scenario 1: Initialize Node SDK and auth in a CloudBase function
Use this when writing a CloudBase 云函数 that needs to interact with Auth:
ts
import tcb from "@cloudbase/node-sdk";
const app = tcb.init({ env: "your-env-id" });
const auth = app.auth();
exports.main = async (event, context) => {
// Your logic here
};
Key points:
Use the same env as configured for the function’s CloudBase 环境.
Avoid hardcoding sensitive values; prefer environment variables or function configuration.
Show full SKILL.md (665 more words)Show less
Scenario 2: Get caller identity in a CloudBase function
Use this when you need to know who is calling your cloud function:
ts
import tcb from "@cloudbase/node-sdk";
const app = tcb.init({ env: "your-env-id" });
const auth = app.auth();
exports.main = async (event, context) => {
const { openId, appId, uid, customUserId } = auth.getUserInfo();
console.log("Caller identity", { openId, appId, uid, customUserId });
// Use uid / customUserId for authorization decisions
// e.g. check roles, permissions, or data ownership
};
Best practices:
Treat uid as the canonical CloudBase user identifier.
Use customUserId only when you have enabled 自定义登录 and mapped your own users.
Never trust openId/appId alone for authorization; they are WeChat‑specific identifiers.
Scenario 3: Get full end‑user profile by UID
Use this when you know a user’s CloudBase uid (for example, from a database record) and you need detailed profile information:
This relies on the environment providing the caller’s identity (e.g. within a CloudBase 云函数). If called where no caller context exists, refer to the official docs and handle errors gracefully.
Scenario 5: Query user by login identifier
Use this when you only know a user’s login identifier (phone, email, username, or custom ID) and need their CloudBase profile:
Call auth.signInWithCustomTicket() to finish login.
Keep the responsibility clear:
Node: authenticate your own user → create ticket → return ticket securely.
Web: receive ticket → sign into CloudBase using documented Web SDK APIs.
Node auth best practices
Single source of truth for identity
Treat CloudBase uid as the primary key when relating end‑user records.
Use customUserId only as a bridge to your own user system.
Least privilege
Perform authorization checks in Node using uid, roles, and ownership, not just login success.
Avoid exposing raw getEndUserInfo / queryUserInfo results directly to clients.
Error handling
Wrap all auth.* calls in try/catch when they return promises.
Log error.message (and error.code if present), but avoid logging sensitive data.
Security
Protect tcb_custom_login.json as you would any private key.
Rotate custom login keys according to CloudBase guidance when necessary.
Use HTTPS and proper authentication between your clients and Node backend when exchanging tickets.
Summary
Use this Node Auth skill whenever you need to:
Know who is calling your Node code in CloudBase.
Look up CloudBase users by uid or login identifier.
Bridge an existing user system into CloudBase with custom login tickets.
Apply consistent, secure, server‑side auth best practices.
For end‑to‑end experiences, pair this skill with:
Web‑side auth documentation (for all browser‑side login and UX using @cloudbase/js-sdk).
CloudBase HTTP auth documentation (for language‑agnostic HTTP integrations, if you are using those).
Treat the official CloudBase Auth Node SDK documentation as the canonical reference for Node auth APIs, and treat the scenarios in this file as vetted best‑practice building blocks.
We found 3 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 2 other GitHub owners. This page covers the copy in majiayu000/claude-skill-registry, which our catalogue first saw on October 7, 2026.
Auth Nodejs Cloudbase next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
Auth Nodejs Cloudbase compared with similar skills
Skill
Stars
Used in
Tokens
Auto-check
Licence
Repo updated
Auth Nodejs Cloudbase this skillmajiayu000/claude-skill-registry
Build production-ready Node.js backend services with Express/Fastify, implementing middleware patterns, error handling, authentication, database integration, and API design best practices.
Complete guide for CloudBase Auth using the CloudBase Node SDK – caller identity, user lookup, custom login tickets, and server-side best practices. Auth Nodejs Cloudbase is an agent skill from majiayu000/claude-skill-registry. Complete guide for CloudBase Auth using the CloudBase Node SDK – caller identity, user lookup, custom login tickets, and server-side best practices.
How do I install Auth Nodejs Cloudbase in Claude Code?
Run `npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a claude-code`. Or copy the skill folder (skills/api/auth-nodejs-baiyongping-cowork-platform-2 in majiayu000/claude-skill-registry) into .claude/skills/auth-nodejs-cloudbase in your project. Claude Code loads it when a task matches its description.
How do I install Auth Nodejs Cloudbase in Codex?
Run `npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a codex`. Or copy the skill folder (skills/api/auth-nodejs-baiyongping-cowork-platform-2 in majiayu000/claude-skill-registry) into .agents/skills/auth-nodejs-cloudbase in your project. Codex loads it when a task matches its description.
Can I use Auth Nodejs Cloudbase in Cursor, Gemini CLI or GitHub Copilot?
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add majiayu000/claude-skill-registry --skill auth-nodejs-cloudbase -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/auth-nodejs-cloudbase, .gemini/skills/auth-nodejs-cloudbase, .github/skills/auth-nodejs-cloudbase and .opencode/skills/auth-nodejs-cloudbase in your project.
What does Auth Nodejs Cloudbase need to run?
SKILL.md names no scripts, command-line tools or credentials: Auth Nodejs Cloudbase is instructions for the agent only. Our summary lists: Node.js.
Does Auth Nodejs Cloudbase access the network?
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Is Auth Nodejs Cloudbase safe to install?
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
What licence does Auth Nodejs Cloudbase use?
Auth Nodejs Cloudbase is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
How many tokens does Auth Nodejs Cloudbase use?
About 3.8k tokens (SKILL.md is roughly 15k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
What are the alternatives to Auth Nodejs Cloudbase?
Skills that share tags, products or a category with Auth Nodejs Cloudbase: Node Backend Development Guidelines (diet103/claude-code-infrastructure-showcase, 10k stars), Nodejs Backend Patterns (ever-works/ever-works, 158 stars), Backend Patterns (hellangleZ/burn-in-cceverywhere-ralph, 112 stars) and Payuni Checkout (paid-tw/skills, 284 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Who maintains Auth Nodejs Cloudbase?
majiayu000 (a GitHub user) maintains it in majiayu000/claude-skill-registry, which has 666 GitHub stars. The repository holds 971 skills in this directory. The repository was last updated on October 7, 2026.