Re-exports§
pub use auth::AuthplaneAuth;pub use auth_provider::AuthProvider;pub use auth_provider::ClientCredentialsProvider;pub use cache::CachedToken;pub use cache::DocumentFetcher;pub use cache::JwksCache;pub use cache::MetadataCache;pub use cache::MetadataChangeCallback;pub use cache::TokenCache;pub use circuit_breaker::CircuitBreaker;pub use circuit_breaker::CircuitState;pub use circuit_policy::should_open_circuit_for_oauth_error;pub use client::AuthplaneClient;pub use client_builder::AuthplaneClientBuilder;pub use consent_elicitation::DEFAULT_CONSENT_MESSAGE;pub use consent_elicitation::UNKNOWN_SERVICE_ID;pub use consent_elicitation::UrlElicitationPayload;pub use consent_elicitation::build_url_elicitation_payload;pub use dpop::DpopProofOptions;pub use dpop::DpopRequestContext;pub use dpop::DpopVerificationOptions;pub use dpop::DpopVerificationOptionsOwned;pub use dpop::SUPPORTED_DPOP_ALGORITHMS;pub use dpop::VerifiedDpopProof;pub use dpop::create_dpop_proof;pub use dpop::dpop_ath;pub use dpop::jwk_thumbprint_sha256;pub use dpop::verify_dpop_proof;pub use dpop::verify_dpop_proof_with_jkt_and_replay;pub use dpop::verify_dpop_proof_with_replay;pub use dpop_provider::DpopNonceStore;pub use dpop_provider::DpopProvider;pub use dpop_provider::InMemoryDpopNonceStore;pub use dpop_replay::DpopReplayStore;pub use dpop_replay::InMemoryDpopReplayStore;pub use errors::AuthError;pub use errors::AuthplaneError;pub use errors::ConsentRequiredError;pub use errors::map_oauth_error;pub use fetch_settings::FetchSettings;pub use inbound_dpop::InboundDPoPOptions;pub use inbound_dpop::InboundDPoPOptionsError;pub use metadata::AuthorizationServerMetadata;pub use metadata::build_metadata_url;pub use oauth::GRANT_TYPE_TOKEN_EXCHANGE;pub use oauth::IntrospectionResponse;pub use oauth::TOKEN_TYPE_ACCESS_TOKEN;pub use oauth::TokenExchangeOptions;pub use oauth::TokenResponse;pub use oauth::parse_token_exchange_error;pub use oauth::parse_token_response_dpop;pub use prm::ProtectedResourceMetadata;pub use prm::build_prm;pub use prm::build_prm_url;pub use resource::AuthplaneResource;pub use resource::ResourceOptions;pub use resource::ResourceOptionsError;pub use resource::RevocationConfig;pub use verified_claims::VerifiedClaims;pub use verified_claims::VerifierError;pub use www_authenticate::http_status;pub use www_authenticate::http_status_for_auth_error;pub use www_authenticate::is_dpop_error;pub use www_authenticate::www_authenticate;pub use www_authenticate::www_authenticate_for_missing_credentials;pub use www_authenticate::www_authenticate_with_resource_metadata;
Modules§
- auth
- auth_
provider - Pluggable authentication providers for AS credentials.
- cache
- In-process caches for OAuth tokens, AS metadata, and JWKS.
- circuit_
breaker - Circuit breaker for authorization-server resilience.
- circuit_
policy - client
- client_
builder - Builder for
crate::AuthplaneClientthat exposes the runtime knobscrate::AuthplaneClient::createconfigures: cache refresh intervals, circuit-breaker thresholds, token-cache buffer, optional outbound DPoP provider, and a metadataon_changehook. - consent_
elicitation - MCP “URL elicitation” payload builder.
- constants
- Well-known string constants used across the SDK.
- dpop
- dpop_
provider - Outbound DPoP provider with per-origin nonce store and helper to build
the
DPoPrequest header. - dpop_
replay - Inbound DPoP proof replay protection.
- errors
- fetch_
settings - inbound_
dpop - Per-resource inbound DPoP validation configuration.
- metadata
- oauth
- prm
- resource
- transport
- verified_
claims - www_
authenticate - RFC 6750 §3
WWW-Authenticateheader builders and HTTP status mapping.