| name | moai-platform-auth |
| description | Authentication and authorization specialist covering Auth0, Clerk, and Firebase Auth. Use when implementing authentication, MFA, SSO, passkeys, WebAuthn, social login, or security features.
|
| license | Apache-2.0 |
| compatibility | Designed for Claude Code |
| allowed-tools | Read, Write, Edit, Grep, Glob, Bash(npm:*), Bash(npx:*), Bash(firebase:*), Bash(curl:*), WebFetch, WebSearch, mcp__context7__resolve-library-id, mcp__context7__get-library-docs |
| user-invocable | false |
| metadata | {"version":"2.0.0","category":"platform","status":"active","updated":"2026-02-09","modularized":"false","platforms":"Auth0, Clerk, Firebase Auth","tags":"auth0, clerk, firebase, authentication, authorization, mfa, sso, passkeys, webauthn, social-login, security","context7-libraries":"/auth0/docs, /clerk/clerk-docs, /firebase/firebase-docs","related-skills":"moai-platform-supabase, moai-platform-vercel, moai-domain-backend, moai-expert-security"} |
| progressive_disclosure | {"enabled":true,"level1_tokens":100,"level2_tokens":4500} |
| triggers | {"keywords":["auth0","clerk","firebase auth","authentication","authorization","mfa","sso","passkeys","webauthn","social login","user management","attack protection","auth ui","passwordless","oauth","identity","jwt","token security"],"agents":["expert-backend","expert-security","expert-frontend"],"phases":["run"]} |
Authentication Platform Specialist
Comprehensive authentication and authorization guidance covering three major platforms: Auth0 (enterprise security), Clerk (modern UX), and Firebase Auth (mobile-first).
Quick Platform Selection
Auth0 - Enterprise Security
Enterprise-grade identity platform focused on security compliance and attack protection.
Best For: Enterprise applications requiring strong compliance (FAPI, GDPR, HIPAA), sophisticated attack protection, token security with sender constraining (DPoP/mTLS), multi-tenant B2B SaaS.
Key Strengths: Advanced attack protection (bot detection, breached passwords, brute force), adaptive MFA, compliance certifications (ISO 27001, SOC 2, FAPI), token security (DPoP, mTLS), extensive security monitoring.
Cost Model: Priced per monthly active user with enterprise features at higher tiers.
Context7 Library: /auth0/docs
Clerk - Modern User Experience
Modern authentication with beautiful pre-built UI components and WebAuthn support.
Best For: Modern web applications prioritizing developer experience and user experience, Next.js applications, applications requiring social login with minimal setup, passwordless authentication.
Key Strengths: Drop-in React components with beautiful UI, WebAuthn and passkeys support, seamless Next.js integration, organization management, simple API with excellent DX.
Cost Model: Free tier available, priced per monthly active user with generous limits.
Context7 Library: /clerk/clerk-docs
Firebase Auth - Mobile-First Integration
Google ecosystem authentication with seamless Firebase services integration.
Best For: Mobile applications (iOS, Android, Flutter), Google ecosystem integration, serverless Cloud Functions, applications requiring anonymous auth with upgrade path, small to medium web applications.
Key Strengths: Native mobile SDKs for iOS/Android/Flutter, Google Sign-In integration, Firebase services integration (Firestore, Storage, Cloud Functions), phone authentication, free tier with generous limits.
Cost Model: Free tier with generous limits, pay-as-you-go for higher volumes.
Context7 Library: /firebase/firebase-docs
Quick Decision Guide
Choose Auth0 when:
- Enterprise security and compliance requirements are critical
- Need sophisticated attack protection and security monitoring
- Implementing sender-constrained tokens (DPoP, mTLS)
- Supporting complex B2B multi-tenant scenarios
- FAPI, GDPR, HIPAA, or PCI DSS compliance required
Choose Clerk when:
- Building modern Next.js or React applications
- Developer experience and beautiful UI are priorities