mirror of
https://github.com/PrefectHQ/fastmcp.git
synced 2026-08-18 19:44:19 +02:00
* Add Auth0MCPProvider for Auth0 Auth for MCP * Document Auth0 MCP provider integration * Add Auth0MCPProvider scope and auth rejection tests Cover permissions-based required_scopes enforcement and unauthenticated MCP 401 responses. * fixed documentation * Narrow Auth0 docs to integration guide only * Fix Auth0 provider: use httpx2 instead of httpx httpx is a dev-only transitive dependency in this repo; runtime installs declare httpx2 exclusively. The module-level 'import httpx' in auth0.py broke import on a clean install of fastmcp or fastmcp-slim[server]. --------- Co-authored-by: Jeremiah Lowin <153965+jlowin@users.noreply.github.com> |
||
|---|---|---|
| .. | ||
| client.py | ||
| README.md | ||
| server.py | ||
Auth0 Auth for MCP Example
Protects a FastMCP server with Auth0 Auth for MCP. Auth0 handles OAuth and client registration; FastMCP validates access tokens.
Auth0 setup
- Enable Resource Parameter Compatibility Profile (Settings → Advanced).
- Create an API whose identifier is
http://127.0.0.1:8000/mcp(must match the URL logged at server startup). - Promote your login connections to domain-level (required for third-party DCR clients).
See Auth0's authorization quickstart for details.
Running
export AUTH0_CONFIG_URL="https://YOUR_TENANT.auth0.com/.well-known/openid-configuration"
python server.py
In another terminal:
python client.py
Use 127.0.0.1 consistently — mixing localhost and 127.0.0.1 breaks audience validation.
For troubleshooting (DCR grants, token exchange errors, MCP Inspector), see the Auth0 integration guide.