Build an integration prompt

Choose an existing or new app, then give your coding agent a prompt for your stack.

Starting point

Application type

Authentication flow

Frontend technology

Trusted backend

Connect callback needs a trusted backend. A browser-only frontend cannot hold the application signing key or handle the application session.

Leave blank if your coding agent should look for it in the project.

Leave blank if your coding agent should inspect the existing callback route.

Your prompt
Integrate Sudomimus authentication into my existing web application using Connect CALLBACK.

Before editing code, read https://docs.sudomimus.com/en-us/connect/flow.md and https://docs.sudomimus.com/en-us/application-rules/return-rules.md. Use https://docs.sudomimus.com/en-us/api/connect/ and https://docs.sudomimus.com/en-us/api/session/ for exact API requests and responses. Read other pages only when the implementation needs them.

Inspect the project structure and current authentication flow before changing code. Follow the project's conventions. Use only current, documented Sudomimus APIs and integration steps. Do not invent endpoints or SDK methods.

Add the documented Connect /establish and /redeem flow. Handle the browser callback and application session on the server. Add a sign-in entry, protected page, refresh, and sign-out where they fit the project.

My stack: web
Inspect the existing frontend technology and language before changing code.
Inspect the existing trusted backend. If none exists, propose one for callback and session handling.
Keep client-auth signing keys out of browser and distributed client code.
Find the application anchor in the existing project configuration. If it is not there, ask me for it.
Find the existing callback URL in the project. If no callback route exists, propose one and ask me to confirm its URL.

Check that the callback URL hostname is allowed by an application CALLBACK ReturnRule. An allowed domain is not a complete callback URL.

Give me a short plan, make the necessary code changes, and explain how to verify sign-in. Ask for missing configuration before using it.