Skip to main content

peek-embed-and-auth

How this starter kit embeds inside the Peek Pro iframe and authenticates every request. Use when adding or changing an authenticated API route, a client-side data fetch, the token handshake, the install/embed entry route, CSP/iframe headers, or when debugging 401s, a blank iframe, or "token" / postMessage problems. Explains the POST → redirect → SPA → postMessage-token → Bearer-API pipeline and the constraints that force it (no cookies, no SSR data fetching, library-owned verification). Also covers calling Peek server-side WITHOUT a user token — install-scoped from a persisted installId — for public pages, webhooks, cron, and background reconciliation. Triggers on "add an API route", "authenticate a request", "peek-auth token", "iframe won't load", "401 in the embed", "postMessage token", "call Peek from a public page", "call Peek without a user token", "createPeekServiceForInstall", "cron/background Peek".

الانتقال إلى التثبيت

معلومات المصدر

المستودع
peek-travel/nextjs-starter-kit
آخر نشاط في المصدر
١٠ يوليو ٢٠٢٦ في ٠٠:٣١
لغة SKILL.md المكتشفة
الإنجليزية
النجوم
٠
التفرعات
٠

خيارات التثبيت

يُحدَّد Prompt الذي يراجع المصدر أولًا بشكل افتراضي. يمكنك التبديل إلى أمر مباشر أو تنزيل نسخة محلية.

مراجعة ملفات المصدر

اقرأ SKILL.md وأي ملفات مرافقة يعرضها SkillsMP قبل أن تقرر التثبيت.