b2c-slas-auth-patterns
Implement SLAS authentication patterns in B2C Commerce including passwordless login (email OTP, SMS OTP, passkeys), session bridging between PWA Kit/Storefront Next and SFRA, hybrid authentication (B2C 25.3+), token refresh flows, trusted system on behalf of (TSOB), and JWT validation. Use this skill whenever the user asks about shopper authentication beyond basic login, token exchange flows, passwordless or biometric auth, keeping sessions alive across storefronts, handling 409 Conflict errors on token endpoints, refreshing shopper tokens, or validating JWTs — even if they don't mention SLAS by name.
Pinned to revision bee72c26e342, so it is the text this page describes rather than whatever the author pushed since.
Files
- skills/b2c-slas-auth-patterns/SKILL.md
- skills/b2c-slas-auth-patterns/evals/trigger-evals.json
- skills/b2c-slas-auth-patterns/references/PASSKEYS.md
- skills/b2c-slas-auth-patterns/references/SESSION-BRIDGE.md
- skills/b2c-slas-auth-patterns/references/TOKEN-LIFECYCLE.md
Every link opens the file at its source, pinned to the revision this page describes.