Overview
flutter_appauth is a Flutter plugin that abstracts the Android and iOS AppAuth SDKs, enabling secure communication with OAuth 2.0 and OpenID Connect identity providers. It simplifies the implementation of authentication flows such as authorization code with PKCE, supporting modern security practices. The package ensures consistent behavior across platforms while handling token management, session persistence, and redirect URI processing. It's ideal for apps requiring robust, standards-compliant authentication.
Use cases
- Integrating with OAuth 2.0 providers
- Implementing OpenID Connect login
- Secure token retrieval and storage
- Handling authorization code flow with PKCE
- Supporting single sign-on (SSO) workflows
Key features
- Cross-platform OAuth 2.0 & OIDC support
- Built-in PKCE enforcement
- Redirect URI handling
- Token refresh and storage
- Platform-specific native SDK integration
Suitable for
- Apps needing secure authentication
- Developers using OAuth 2.0 or OIDC
- Projects requiring native-level auth security
- Mobile apps with identity provider integration
Considerations
- Requires proper redirect URI configuration
- Needs platform-specific setup (Android/iOS)
- Limited to OAuth 2.0 and OIDC
- Not suitable for non-interactive flows
- Depends on native SDKs for full functionality