Skip to content

composeIdentityAuthenticate

function composeIdentityAuthenticate(authenticate, sources):
| AuthenticateFn
| undefined;

Defined in: src/http/grant-auth.ts:172

Append the identity bearer authenticators after the deployment’s own.

Order: authenticate (JWT, static, …), then sealed grants, then resolveToken. With neither identity source, authenticate is returned unchanged. With no authenticate, a request carrying no Authorization header stays anonymous exactly as before; one carrying a bearer nothing accepts is 401.

authenticate must throw a plain Error or AuthFailure for a credential it does not recognise – one that answers anonymous for everything ends the chain first.

Parameter Type
authenticate | AuthenticateFn | undefined
sources IdentityBearerSources

| AuthenticateFn | undefined