a937de7bda0eb6734c6539b250926fc88aa77a35
Pattern A (native OAuth2) is preferred — create provider + app in Authentik, configure service with discovery URL. Pattern B (Caddy forward_auth) is the fallback for services with no native auth. Reusable Authentik flow/scope PKs pinned so they don't need re-deriving. Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
homelabstack
Languages
Python
54.5%
Shell
18.5%
PowerShell
16%
JavaScript
5.5%
HTML
4.7%
Other
0.7%