# \#authentication

**URL:** https://community.weweb.io/tag/authentication/9.md

[Latest](https://community.weweb.io/latest.md) · [Categories](https://community.weweb.io/categories.md) · [Tags](https://community.weweb.io/tags.md)

---

## [Supabase connection issue](https://community.weweb.io/t/supabase-connection-issue/21624)

<div class="topic-metadata">

**Author:** [@Mansir](https://community.weweb.io/u/Mansir)\
**Replies:** 1\
**Last updated:** [September 21, 2026, 9:35am UTC](https://community.weweb.io/t/supabase-connection-issue/21624 "2026-09-21T09:35:06Z")

</div>

Following up on my Supabase connection issue (WeWeb 3.0, new Supabase project, ‘An error occurred while saving the connection’ on Create, despite Administrator role, Healthy project, and trying a new secret key). This is…

---

## [Post-login return URL (for redirection)](https://community.weweb.io/t/post-login-return-url-for-redirection/15213)

<div class="topic-metadata">

**Author:** [@clncsports](https://community.weweb.io/u/clncsports)\
**Replies:** 9\
**Last updated:** [July 13, 2026, 2:55pm UTC](https://community.weweb.io/t/post-login-return-url-for-redirection/15213 "2026-07-13T14:55:51Z")

</div>

How can I set a return URL/page for post-login redirect? Use case: user is linked to a specific page but is unauthed, so they get automatically redirected to the login page. Post-login, I want them to be redirected to t…

---

## [WeWeb Unify & Front-end Auth Out of Sync | Supabase](https://community.weweb.io/t/weweb-unify-front-end-auth-out-of-sync-supabase/21371)

<div class="topic-metadata">

**Author:** [@Janus](https://community.weweb.io/u/Janus)\
**Replies:** 1\
**Last updated:** [July 3, 2026, 10:33pm UTC](https://community.weweb.io/t/weweb-unify-front-end-auth-out-of-sync-supabase/21371 "2026-07-03T22:33:01Z")

</div>

Has anyone else had an issue when using the Supabase Auth integration via WeWeb Unify (Data & API), where the front-end has the user as authenticated and stays authenticated as expected - but data retrieval via the WeWeb…

---

## [Xano Realtime | RealtimeAuthToken present in localStorage but WebSocket connects as anonymous](https://community.weweb.io/t/xano-realtime-realtimeauthtoken-present-in-localstorage-but-websocket-connects-as-anonymous/21300)

<div class="topic-metadata">

**Author:** [@TOoms](https://community.weweb.io/u/TOoms)\
**Replies:** 4\
**Last updated:** [June 26, 2026, 2:50pm UTC](https://community.weweb.io/t/xano-realtime-realtimeauthtoken-present-in-localstorage-but-websocket-connects-as-anonymous/21300 "2026-06-26T14:50:31Z")

</div>

Context: Stack: WeWeb + Xano Auth plugin + Xano Realtime Problem: The RealtimeAuthToken is correctly stored in localStorage (same value as AuthToken), meaning the user is authenticated via Xano Auth plugin. However, whe…

---

## [Data&API - table views(authenticated) show unauthenticated error randomly](https://community.weweb.io/t/data-api-table-views-authenticated-show-unauthenticated-error-randomly/21340)

<div class="topic-metadata">

**Author:** [@Ruak](https://community.weweb.io/u/Ruak)\
**Replies:** 1\
**Last updated:** [June 16, 2026, 3:12pm UTC](https://community.weweb.io/t/data-api-table-views-authenticated-show-unauthenticated-error-randomly/21340 "2026-06-16T15:12:58Z")

</div>

Hi, The new collections are now the “Views” for tables in data&Api. Our backend is supabase with RLS enabled with policies. Now randomly we observe that if the views are kept as “authenticated” instead of public(which i…

---

## [Anybody else facing this issue : "unpublish project" button in project settings keeps some parts of the app still live](https://community.weweb.io/t/anybody-else-facing-this-issue-unpublish-project-button-in-project-settings-keeps-some-parts-of-the-app-still-live/21114)

<div class="topic-metadata">

**Author:** [@Ruak](https://community.weweb.io/u/Ruak)\
**Replies:** 1\
**Last updated:** [April 28, 2026, 5:28am UTC](https://community.weweb.io/t/anybody-else-facing-this-issue-unpublish-project-button-in-project-settings-keeps-some-parts-of-the-app-still-live/21114 "2026-04-28T05:28:10Z")

</div>

Hi, I have a bug acknowledged by the weweb team where the unpublish project button in the project settings was not working i.e. it would not unpublish the app. Now its partially fixed only - the app does get unpublishe…

---

## [How to configure self-hosted Supabase in the new Data & API tab?](https://community.weweb.io/t/how-to-configure-self-hosted-supabase-in-the-new-data-api-tab/21099)

<div class="topic-metadata">

**Author:** [@Igor\_N](https://community.weweb.io/u/Igor_N)\
**Replies:** 3\
**Last updated:** [April 23, 2026, 8:06pm UTC](https://community.weweb.io/t/how-to-configure-self-hosted-supabase-in-the-new-data-api-tab/21099 "2026-04-23T20:06:55Z")

</div>

In the new editor I don’t see how to configure a self-hosted Supabase connection in a new project. The only option is “Connect Supabase” which uses OAuth via supabase.com — doesn’t work for self-hosted. In the old Plugin…

---

## [If I remove an Auth plugin to switch to another, will users be able to use the old auth until I publish the changes?](https://community.weweb.io/t/if-i-remove-an-auth-plugin-to-switch-to-another-will-users-be-able-to-use-the-old-auth-until-i-publish-the-changes/8394)

<div class="topic-metadata">

**Author:** [@Micah](https://community.weweb.io/u/Micah)\
**Replies:** 2\
**Last updated:** [April 21, 2026, 4:23am UTC](https://community.weweb.io/t/if-i-remove-an-auth-plugin-to-switch-to-another-will-users-be-able-to-use-the-old-auth-until-i-publish-the-changes/8394 "2026-04-21T04:23:40Z")

</div>

title says the quesiton

---

## [Problems with Supabase Plugin Load and Connection](https://community.weweb.io/t/problems-with-supabase-plugin-load-and-connection/21079)

<div class="topic-metadata">

**Author:** [@higorlacerda](https://community.weweb.io/u/higorlacerda)\
**Replies:** 3\
**Last updated:** [April 20, 2026, 1:09pm UTC](https://community.weweb.io/t/problems-with-supabase-plugin-load-and-connection/21079 "2026-04-20T13:09:09Z")

</div>

Anyone having trouble reconnecting with the supabase plugin? On my end, it shows an error when loading the plugin when the editor opens up. And I’m not able to reconnect.

---

## [Supabase plugin not listing all tables after recent WeWeb update](https://community.weweb.io/t/supabase-plugin-not-listing-all-tables-after-recent-weweb-update/21052)

<div class="topic-metadata">

**Author:** [@rebeferrer](https://community.weweb.io/u/rebeferrer)\
**Replies:** 3\
**Last updated:** [April 13, 2026, 3:15pm UTC](https://community.weweb.io/t/supabase-plugin-not-listing-all-tables-after-recent-weweb-update/21052 "2026-04-13T15:15:28Z")

</div>

Hi everyone, Since the WeWeb update last week, several of my Supabase collections have stopped working with a PGRST205 error. I’m using the old Supabase + Supabase Auth plugins (not the new Data & API integration). The…

---

## [After Auth0 Signup user being asked to Login again](https://community.weweb.io/t/after-auth0-signup-user-being-asked-to-login-again/20756)

<div class="topic-metadata">

**Author:** [@springbloom](https://community.weweb.io/u/springbloom)\
**Replies:** 5\
**Last updated:** [February 10, 2026, 5:19pm UTC](https://community.weweb.io/t/after-auth0-signup-user-being-asked-to-login-again/20756 "2026-02-10T17:19:15Z")

</div>

Hi everyone, I’m struggling with a redirect loop issue using WeWeb + Auth0. I am trying to build a custom onboarding flow and could use some expert eyes on the “handshake” process. The Workflow Custom Onboarding: The…

---

## [Is anybody else having issues with the Supabase plug-in?](https://community.weweb.io/t/is-anybody-else-having-issues-with-the-supabase-plug-in/20752)

<div class="topic-metadata">

**Author:** [@oscar\_estoico](https://community.weweb.io/u/oscar_estoico)\
**Replies:** 4\
**Last updated:** [February 5, 2026, 9:41am UTC](https://community.weweb.io/t/is-anybody-else-having-issues-with-the-supabase-plug-in/20752 "2026-02-05T09:41:08Z")

</div>

Everything was working fine for me, but now the auth and data plugin are giving me errors. I’ve confirmed that my API keys are correct and not expired.

---

## [Supabase OAuth Logout - Missing OAuth 'id\_token' for 'id\_token\_hint' Parameter](https://community.weweb.io/t/supabase-oauth-logout-missing-oauth-id-token-for-id-token-hint-parameter/20623)

<div class="topic-metadata">

**Author:** [@rikoentw](https://community.weweb.io/u/rikoentw)\
**Replies:** 2\
**Last updated:** [January 12, 2026, 6:16pm UTC](https://community.weweb.io/t/supabase-oauth-logout-missing-oauth-id-token-for-id-token-hint-parameter/20623 "2026-01-12T18:16:26Z")

</div>

I am using Keycloak as OAuth Provider coupled with Supabase. When the user logs out, weweb should not only terminate the supabase session (-\> Supabase Logout Action), but also terminate the keycloak session. This can be…

---

## [How to persist Supabase Auth session in WeWeb — keep user logged in after closing the tab + logout button](https://community.weweb.io/t/how-to-persist-supabase-auth-session-in-weweb-keep-user-logged-in-after-closing-the-tab-logout-button/20470)

<div class="topic-metadata">

**Author:** [@muntean](https://community.weweb.io/u/muntean)\
**Replies:** 1\
**Last updated:** [December 4, 2025, 4:05pm UTC](https://community.weweb.io/t/how-to-persist-supabase-auth-session-in-weweb-keep-user-logged-in-after-closing-the-tab-logout-button/20470 "2025-12-04T16:05:21Z")

</div>

Hi everyone — quick question and a short explanation of my current problem and solution I’m trying to implement. Goal: keep the user logged in after closing the tab/browser and reopening the app, and implement a proper …

---

## [Implementing soft delete for user accounts - Supabase](https://community.weweb.io/t/implementing-soft-delete-for-user-accounts-supabase/20311)

<div class="topic-metadata">

**Author:** [@Melanie](https://community.weweb.io/u/Melanie)\
**Replies:** 2\
**Last updated:** [November 18, 2025, 2:42pm UTC](https://community.weweb.io/t/implementing-soft-delete-for-user-accounts-supabase/20311 "2025-11-18T14:42:35Z")

</div>

Hey everyone, I would like users on my app to be able to delete their account, but instead of permanently deleting them, I’d like to perform a soft delete, meaning I’ll anonymize their data. I have two tables to anony…

---

## [Change Variable Value not saving value?](https://community.weweb.io/t/change-variable-value-not-saving-value/20395)

<div class="topic-metadata">

**Author:** [@Haystackz](https://community.weweb.io/u/Haystackz)\
**Replies:** 4\
**Last updated:** [November 18, 2025, 1:32pm UTC](https://community.weweb.io/t/change-variable-value-not-saving-value/20395 "2025-11-18T13:32:24Z")

</div>

Hello! Very new user here - I’m trying to save a value from an API response to a variable, but I can’t access the result in my formula. Basically, my xano api that validates my auth0 JWT also creates a xano token (xano\_t…

---

## [Supabase plugin not available on initial load](https://community.weweb.io/t/supabase-plugin-not-available-on-initial-load/20300)

<div class="topic-metadata">

**Author:** [@ZakkeryBock](https://community.weweb.io/u/ZakkeryBock)\
**Replies:** 2\
**Last updated:** [November 3, 2025, 2:55pm UTC](https://community.weweb.io/t/supabase-plugin-not-available-on-initial-load/20300 "2025-11-03T14:55:40Z")

</div>

Hello, getting an issue that seems to be related to the weweb supabase plugin. After login I am getting this in the console: I have tried using the official way of login and I have also used my coded version: try { …

---

## [WeWeb & Supabase Expert Needed to Build, Optimize & Scale No-Code SaaS Platform](https://community.weweb.io/t/weweb-supabase-expert-needed-to-build-optimize-scale-no-code-saas-platform/20219)

<div class="topic-metadata">

**Author:** [@elvismrsa](https://community.weweb.io/u/elvismrsa)\
**Replies:** 6\
**Last updated:** [October 25, 2025, 3:42pm UTC](https://community.weweb.io/t/weweb-supabase-expert-needed-to-build-optimize-scale-no-code-saas-platform/20219 "2025-10-25T15:42:32Z")

</div>

We operate a business-to-business website, Advisera.com, offering online compliance and training products for small and mid-sized companies. We’re now building a next-generation SaaS platform to help businesses streamli…

---

## [User Roles Supabase](https://community.weweb.io/t/user-roles-supabase/20089)

<div class="topic-metadata">

**Author:** [@Philibert](https://community.weweb.io/u/Philibert)\
**Replies:** 2\
**Last updated:** [October 16, 2025, 11:55am UTC](https://community.weweb.io/t/user-roles-supabase/20089 "2025-10-16T11:55:23Z")

</div>

Hey ! I can’t manage to have roles working in weweb x supabase I did setup the roles table in the Supabase Auth Plugin But can’t get it in the auth \> Roles “No role“ + error alert about the roles plugin BTW, no users a…

---

## [Redirect path - Worflow](https://community.weweb.io/t/redirect-path-worflow/20147)

<div class="topic-metadata">

**Author:** [@Equipe-Cavinatti](https://community.weweb.io/u/Equipe-Cavinatti)\
**Replies:** 0\
**Last updated:** [October 10, 2025, 5:01pm UTC](https://community.weweb.io/t/redirect-path-worflow/20147 "2025-10-10T17:01:20Z")

</div>

When someone accesses a job post via a link, the expected behavior is: If the user is not logged in, redirect them to the login page, while preserving the original destination (example: redirect=/complete-post-candida…

---

## [Setting up openID authentication code flow with Entra OAuth (AzureAD)](https://community.weweb.io/t/setting-up-openid-authentication-code-flow-with-entra-oauth-azuread/7764)

<div class="topic-metadata">

**Author:** [@Chimera](https://community.weweb.io/u/Chimera)\
**Replies:** 4\
**Last updated:** [September 20, 2025, 11:10pm UTC](https://community.weweb.io/t/setting-up-openid-authentication-code-flow-with-entra-oauth-azuread/7764 "2025-09-20T23:10:05Z")

</div>

I am trying to setup Entra ID authentication through the OpenID plugin. Flow is Authorization Code Flow with PKCE. I have setup plugin configuration correctly (see the image below). After the whole OAuth flow I am redire…

---

## [Multi-step authentication not working, expired when it's not expired](https://community.weweb.io/t/multi-step-authentication-not-working-expired-when-its-not-expired/20018)

<div class="topic-metadata">

**Author:** [@joachim](https://community.weweb.io/u/joachim)\
**Replies:** 1\
**Last updated:** [September 20, 2025, 1:47pm UTC](https://community.weweb.io/t/multi-step-authentication-not-working-expired-when-its-not-expired/20018 "2025-09-20T13:47:01Z")

</div>

I can’t login to my weweb dashboard since i only get a error for each time i put in the right code from micorsoft authenticator. Please help, or else i can’t work. Here’s the console error: api.weweb.io/v2/users/log…

---

## [How token based auth actually works under the cover?](https://community.weweb.io/t/how-token-based-auth-actually-works-under-the-cover/6975)

<div class="topic-metadata">

**Author:** [@filipl](https://community.weweb.io/u/filipl)\
**Replies:** 3\
**Last updated:** [September 20, 2025, 11:13am UTC](https://community.weweb.io/t/how-token-based-auth-actually-works-under-the-cover/6975 "2025-09-20T11:13:59Z")

</div>

Hey, I’ve been using token based auth in my Weweb project and I noticed that access and refresh tokens are stored in cookies. I have not deployed my project yet, this is how I see it in the editor. Is this how the toke…

---

## [Auth0 - Role and permissions of user not retrieved after successful login](https://community.weweb.io/t/auth0-role-and-permissions-of-user-not-retrieved-after-successful-login/19734)

<div class="topic-metadata">

**Author:** [@polo\_NOLOW](https://community.weweb.io/u/polo_NOLOW)\
**Replies:** 3\
**Last updated:** [September 17, 2025, 8:07am UTC](https://community.weweb.io/t/auth0-role-and-permissions-of-user-not-retrieved-after-successful-login/19734 "2025-09-17T08:07:53Z")

</div>

Hello, I added Auth0 login but I cannot retrieve the role and permissions of the user. Following is implemented already : Auth0 : audience is setup Auth0 : RBAC is enabled Auth0 : Add permissions in the access token i…

---

## [Shared session across subdomain](https://community.weweb.io/t/shared-session-across-subdomain/19947)

<div class="topic-metadata">

**Author:** [@talenodigital](https://community.weweb.io/u/talenodigital)\
**Replies:** 0\
**Last updated:** [September 11, 2025, 10:10am UTC](https://community.weweb.io/t/shared-session-across-subdomain/19947 "2025-09-11T10:10:48Z")

</div>

Hi Team :waving\_hand: I noticed the we have shared authentication in WeWeb. I logged in at dashboard.weweb.io I opened a project Project opens at editor.weweb.io without the need for me to login again Been trying to …

---

## [error : Xano signup endpoint cannot be loaded, please check your configuration, it can be because the swagger is disabled](https://community.weweb.io/t/error-xano-signup-endpoint-cannot-be-loaded-please-check-your-configuration-it-can-be-because-the-swagger-is-disabled/18330)

<div class="topic-metadata">

**Author:** [@youc](https://community.weweb.io/u/youc)\
**Replies:** 4\
**Last updated:** [September 8, 2025, 8:35pm UTC](https://community.weweb.io/t/error-xano-signup-endpoint-cannot-be-loaded-please-check-your-configuration-it-can-be-because-the-swagger-is-disabled/18330 "2025-09-08T20:35:30Z")

</div>

hi everybody ! I’m trying to set up a login page for my project. I’ve added the Xano Auth plugin and configured everything properly with the correct endpoints. However, when I try to click the button in the acti…

---

## [How do I get the googleContinue.result.data.token of my production redirect uri?](https://community.weweb.io/t/how-do-i-get-the-googlecontinue-result-data-token-of-my-production-redirect-uri/19822)

<div class="topic-metadata">

**Author:** [@Equipe-Cavinatti](https://community.weweb.io/u/Equipe-Cavinatti)\
**Replies:** 0\
**Last updated:** [August 29, 2025, 8:32pm UTC](https://community.weweb.io/t/how-do-i-get-the-googlecontinue-result-data-token-of-my-production-redirect-uri/19822 "2025-08-29T20:32:09Z")

</div>

Here’s the print, the action is disabled for nowbecause I’m working on the ditor and it works fine, but in production in does not work, it does not redirect to the profile of the user because I can’t get the authToken, I…

---

## [Token Based Auth - refresh token](https://community.weweb.io/t/token-based-auth-refresh-token/7964)

<div class="topic-metadata">

**Author:** [@asanzjones](https://community.weweb.io/u/asanzjones)\
**Replies:** 1\
**Last updated:** [August 17, 2025, 9:24am UTC](https://community.weweb.io/t/token-based-auth-refresh-token/7964 "2025-08-17T09:24:58Z")

</div>

I have a couple of questions related to the Token Based Auth plugin refresh token configuration. What’s the http verb expected for the refresh endpoint (GET, POST, …)? When does the plugin call the refresh endpoint…

---

## [Handling refresh token from THE REST API](https://community.weweb.io/t/handling-refresh-token-from-the-rest-api/17107)

<div class="topic-metadata">

**Author:** [@Iseoluwa\_Ola](https://community.weweb.io/u/Iseoluwa_Ola)\
**Replies:** 1\
**Last updated:** [August 17, 2025, 8:47am UTC](https://community.weweb.io/t/handling-refresh-token-from-the-rest-api/17107 "2025-08-17T08:47:13Z")

</div>

Hey everyone, I’m working on authentication in WeWeb using a REST API. Right now, I only receive an access token after login, but there’s no refresh token provided and i have added the refresh token . My concern is …

---

## [\[Help\] Multi-tenant implementation with Xano + Weweb](https://community.weweb.io/t/help-multi-tenant-implementation-with-xano-weweb/19668)

<div class="topic-metadata">

**Author:** [@Lucaslobos](https://community.weweb.io/u/Lucaslobos)\
**Replies:** 2\
**Last updated:** [August 16, 2025, 12:13pm UTC](https://community.weweb.io/t/help-multi-tenant-implementation-with-xano-weweb/19668 "2025-08-16T12:13:36Z")

</div>

Hey guys! I am developing a SaaS system and would like help to assemble the multi-tenant structure using Weweb and Xano. The logic that I am trying to assemble would be something like this: My main client (Tenant) crea…

[Next page](https://community.weweb.io/tag/authentication/9.md?match_all_tags=true&page=1&tags%5B%5D=authentication)
