Skip to content

Comments

RFC: Registry authentication for ToolHive CLI#43

Open
ChrisJBurns wants to merge 2 commits intomainfrom
rfc/registry-authentication
Open

RFC: Registry authentication for ToolHive CLI#43
ChrisJBurns wants to merge 2 commits intomainfrom
rfc/registry-authentication

Conversation

@ChrisJBurns
Copy link

Summary

  • Add OAuth/OIDC authentication with PKCE for ToolHive CLI to access private MCP server registries
  • Phase 1: Browser-based OAuth flow with token caching and transparent refresh
  • Phase 2 (future): Static bearer token support for CI/CD environments

Test plan

  • Review RFC content for completeness and accuracy
  • Verify alignment with existing auth infrastructure (pkg/auth/oauth/, pkg/secrets/)
  • Validate security considerations cover all threat vectors
  • Confirm backward compatibility claims

Related: toolhive#2962, toolhive#3908

🤖 Generated with Claude Code

ChrisJBurns and others added 2 commits February 20, 2026 22:35
Add RFC for OAuth/OIDC authentication support when accessing remote
MCP server registries. Phase 1 covers browser-based OAuth with PKCE,
Phase 2 covers bearer tokens for CI/CD environments.

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant