mirror of
https://github.com/supabase/supabase.git
synced 2026-10-05 17:35:10 +03:00
## I have read the [CONTRIBUTING.md](https://github.com/supabase/supabase/blob/master/CONTRIBUTING.md) file. YES ## What kind of change does this PR introduce? Feature — the visual redesign itself. Part 5 of 6 in a stack that splits the library redesign into reviewable pieces. The four PRs beneath it carry the build, content and Markdown work; what's left here is layout, navigation and styling. ## What is the current behavior? The library is laid out like a documentation site: a sidebar tree of framework folders, a homepage that lists links, and a guide page that opens with prose. That shape suits reference material, but the library's job is to help someone find a block and install it — and the sidebar is the only way to discover one. ## What is the new behavior? The homepage is the catalog itself — blocks grouped by what they do (authentication, database, storage, realtime, messaging, AI, foundations) rather than by framework, each with a preview of what it renders, filterable by category. Navigation moves into a site header whose Explore menu opens the same categories, so the catalog is reachable from any page and the per-page sidebar tree is gone. A guide opens with what the reader came for: the block's name, the install command, and a preview pane with tabs — the running component and its files — before any prose. The file tree that used to sit mid-page under "Folder structure" is one of those tabs. Every guide also offers a copy of the agent prompt that points at its Markdown. Getting-started pages get the same treatment: the quickstart is now a framework-tabbed walkthrough rather than a wall of setup links. ## Additional context `BlockOverviewTabs` renders Preview and Files here. #50369, stacked on top of this one, adds the third "What's added" tab — it is the only part of the redesign that depends on the new resource analyzer, which is why it sits above this PR rather than below it. Also removes what the redesign orphaned: the table-of-contents component and its `remark` / `mdast-util-toc` dependencies, and the sidebar nav and command-item configuration the new header replaced. The block source changes are typography only — auth card titles move from `text-2xl` to `font-medium text-lg tracking-normal` — which is what regenerates the auth registry artifacts. <!-- This is an auto-generated comment: release notes by coderabbit.ai --> ## Summary by CodeRabbit * **New Features** * Added a redesigned Supabase Library catalog with categorized blocks, framework-aware navigation, previews, file views, and installation actions. * Added framework-specific quickstart guides for Next.js, React, Vue, Nuxt, React Router, and TanStack Start. * Added copy-to-clipboard prompts, “Open in v0” actions, starter templates, and richer visual previews. * **Improvements** * Updated documentation layouts, FAQ content, typography, navigation, accessibility, and responsive behavior. * Improved mobile navigation, framework selection, and standardized block installation guidance. * Refined authentication and social-login block presentation with more consistent heading styles. <!-- end of auto-generated comment: release notes by coderabbit.ai --> --------- Co-authored-by: Claude Opus 5 <noreply@anthropic.com> Co-authored-by: Danny White <3104761+dnywh@users.noreply.github.com>
89 lines
3.5 KiB
Plaintext
89 lines
3.5 KiB
Plaintext
---
|
|
title: OAuth Consent
|
|
description: OAuth 2.1 consent block for React single-page applications
|
|
preview: |-
|
|
<BlockOverview name="oauth-consent-react" showFiles>
|
|
<BlockPreview name="oauth-consent" />
|
|
</BlockOverview>
|
|
---
|
|
|
|
## Installation
|
|
|
|
<BlockItem name="oauth-consent-react" />
|
|
|
|
This block includes the [Supabase client](/library/docs/react/client). If you already have one installed, you can skip overwriting it.
|
|
|
|
## Usage
|
|
|
|
This block provides an OAuth 2.1 consent component for an app that already has authentication. It does not install sign-in, sign-up, callback, or router-specific routes.
|
|
|
|
Render the component from your existing `/oauth/consent` route and pass the `authorization_id` query parameter. Set `signInPath` to the sign-in route in your app:
|
|
|
|
```tsx
|
|
import { OAuthConsent } from '@/components/oauth-consent'
|
|
|
|
export function ConsentPage() {
|
|
const authorizationId = new URLSearchParams(window.location.search).get('authorization_id')
|
|
|
|
return (
|
|
<main className="flex min-h-svh items-center justify-center p-6 md:p-10">
|
|
<OAuthConsent
|
|
className="w-full max-w-lg"
|
|
authorizationId={authorizationId}
|
|
signInPath="/login"
|
|
productName="Your product"
|
|
/>
|
|
</main>
|
|
)
|
|
}
|
|
```
|
|
|
|
When the visitor has no session, the consent screen redirects to `signInPath` and preserves the original consent URL in the `next` query parameter. After sign-in, your login page must send the visitor back to the path in `next`; otherwise the OAuth flow stops at your login screen. The password-based auth block follows `next` automatically. For a custom login page, validate that `next` is a relative path before redirecting to it:
|
|
|
|
```ts
|
|
// After sign-in succeeds:
|
|
const next = new URLSearchParams(window.location.search).get('next')
|
|
try {
|
|
const nextUrl = new URL(next ?? '/protected', window.location.origin)
|
|
location.href =
|
|
nextUrl.origin === window.location.origin
|
|
? `${nextUrl.pathname}${nextUrl.search}${nextUrl.hash}`
|
|
: '/protected'
|
|
} catch {
|
|
location.href = '/protected'
|
|
}
|
|
```
|
|
|
|
Set the `productName` prop to replace the `Your product` placeholder in the consent header.
|
|
|
|
### Getting started
|
|
|
|
After installing the block, you'll have the following environment variables in your `.env.local` file:
|
|
|
|
```env
|
|
VITE_SUPABASE_URL=
|
|
VITE_SUPABASE_PUBLISHABLE_KEY=
|
|
```
|
|
|
|
- If you're using supabase.com, you can find these values in the [Connect modal](https://supabase.com/dashboard/project/_?showConnect=true&connectTab=frameworks&framework=react&using=vite&with=supabasejs) under App Frameworks or in your project's [API settings](https://supabase.com/dashboard/project/_/settings/api).
|
|
- If you're using a local instance of Supabase, you can find these values by running `supabase start` or `supabase status` (if you already have it running).
|
|
|
|
### Configure the OAuth server
|
|
|
|
Enable the OAuth server in the Supabase Dashboard under **Authentication** > **OAuth Server**, then set its authorization URL path to `/oauth/consent`. For local development, set the following in `supabase/config.toml`:
|
|
|
|
```toml
|
|
[auth.oauth_server]
|
|
enabled = true
|
|
authorization_url_path = "/oauth/consent"
|
|
```
|
|
|
|
Recent CLI versions already write an `[auth.oauth_server]` section with `enabled = false`. Edit that section rather than adding a second one, which fails with `table oauth_server already exists`.
|
|
|
|
The route expects the `authorization_id` query parameter that Supabase Auth supplies during the authorization flow.
|
|
|
|
## Further reading
|
|
|
|
- [OAuth Server](https://supabase.com/docs/guides/auth/oauth-server)
|
|
- [Supabase Auth](https://supabase.com/docs/guides/auth)
|