Skip to content

Conversation

@streamer45
Copy link
Owner

Summary

  • Add built-in JWT authentication for HTTP API/WebSocket and MoQ/WebTransport (JWKS endpoint, cookie sessions, token mint/list/revoke, key rotation).
  • Update MoQ subscriber/publisher nodes and docs to support authenticated relays via ?jwt= and configurable params.
  • Add startup warnings for common deploy footguns (auto-auth overriding proxy role headers; auth enabled without TLS).
  • Improve admin UX: CLI token minting (skit auth mint ..., plus print-admin-token --raw) and UI copy buttons / tighter tokens table layout.

Addresses #5

@streamer45 streamer45 self-assigned this Jan 15, 2026
@streamer45 streamer45 added this to the v0.2.0 milestone Jan 15, 2026
@streamer45 streamer45 merged commit 9bb285b into main Jan 16, 2026
14 checks passed
@streamer45 streamer45 deleted the auth branch January 16, 2026 10:18
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants