5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content
5 changes: 5 additions & 0 deletions .changeset/blue-comics-kneel.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
---
'@clerk/backend': minor
---

Add missing properties to OAuthApplicationJSON
2 changes: 2 additions & 0 deletions .changeset/small-moments-find.md
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,2 @@
---
---
Comment on lines +1 to +2

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

💡 Verification agent

🧩 Analysis chain

Empty changeset frontmatter — specify package(s) and bump type, or CI/release will fail

This file contains only two --- lines with no package bump metadata or description. Changesets require a YAML frontmatter block mapping package names to semver bump types, followed by a description. Given the PR adds new OAuthApplication fields (public surface) and TypeDoc, this likely warrants a minor bump for the backend SDK. Please fill this out (or remove the file if no release is intended).

Suggested content (verify package names and bump types before committing):

---- ----+---+ '@clerk/backend': minor+---++feat(backend): Add TypeDoc to OAuthApplication and surface new fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required+- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

If additional published packages are affected, list them in the same frontmatter block with their respective bump types.

Run this script to verify the correct package name(s) and decide bump levels based on changed files:


🏁 Script executed:

#!/bin/bashset -euo pipefail
# List changed files against main (adjust base if needed)
BASE_REF=${BASE_REF:-origin/main}
git fetch -q origin ||true
CHANGED_FILES=$(git diff --name-only "${BASE_REF}"...HEAD)echo"Changed files:"printf"%s\n""${CHANGED_FILES}"echoecho"Resolving impacted package roots and names:"echo"${CHANGED_FILES}"|whileread -r f;do# Walk up to find nearest package.json
dir="$(dirname "$f")"while [[ "$dir"!="."&&"$dir"!="/" ]];doif [[ -f"$dir/package.json" ]];thenecho"$dir/package.json"breakfi
dir="$(dirname "$dir")"donedone| sort -u |whileread -r pkgjson;do
name=$(jq -r '.name'"$pkgjson"2>/dev/null ||echo null)
private=$(jq -r '.private // false'"$pkgjson"2>/dev/null ||echo false)echo"$(dirname "$pkgjson") — name: $name — private: $private"doneechoecho"Tip:"echo"- Use 'minor' if you surfaced new public fields/types; 'patch' if purely docs/internal."

Length of output: 3324


Specify the changeset frontmatter for @clerk/backend

Your .changeset/small-moments-find.md is currently empty, which will cause CI/release to fail. Since your PR adds new public fields/types to the backend SDK, you should apply a minor bump to @clerk/backend. Please update the file to include:

----++---+ '@clerk/backend': minor+---++feat(backend): add TypeDoc & expose new OAuthApplication fields++- JSON: client_uri, client_image_url, dynamically_registered, consent_screen_enabled, pkce_required +- Class: clientUri, clientImageUrl, dynamicallyRegistered, consentScreenEnabled, pkceRequired

• File needing update:

  • .changeset/small-moments-find.md

Tag the correct package and bump type to ensure the release goes out smoothly.

Committable suggestion skipped: line range outside the PR's diff.

🧰 Tools
🪛 LanguageTool

[grammar] ~1-~1: Hier könnte ein Fehler sein.
Context: --- ---

(QB_NEW_DE)

🤖 Prompt for AI Agents
In .changeset/small-moments-find.md around lines 1 to 2, the file is empty and
missing the required changeset frontmatter; add a valid changeset YAML block
that lists the package @clerk/backend and sets the bump type to "minor" (and
include a short summary message), ensuring the file begins and ends with --- and
contains the package name and "minor" bump so CI/release will succeed.

Original file line numberDiff line numberDiff line change
Expand Up@@ -237,6 +237,7 @@ exports[`Typedoc output > should have a deliberate file structure 1`] = `
"backend/infer-auth-object-from-token.mdx",
"backend/invitation-status.mdx",
"backend/invitation.mdx",
"backend/o-auth-application.mdx",
"backend/organization-invitation-status.mdx",
"backend/organization-invitation.mdx",
"backend/organization-membership-public-user-data.mdx",
Expand Down
5 changes: 5 additions & 0 deletions packages/backend/src/api/resources/JSON.ts
Original file line numberDiff line numberDiff line change
Expand Up@@ -320,6 +320,11 @@ export interface OAuthApplicationJSON extends ClerkResourceJSON {
instance_id: string;
name: string;
client_id: string;
client_uri: string | null;
client_image_url: string | null;
dynamically_registered: boolean;
consent_screen_enabled: boolean;
pkce_required: boolean;
public: boolean;
scopes: string;
redirect_uris: Array<string>;
Expand Down
73 changes: 73 additions & 0 deletions packages/backend/src/api/resources/OAuthApplication.ts
Original file line numberDiff line numberDiff line change
@@ -1,21 +1,89 @@
import type { OAuthApplicationJSON } from './JSON';

/**
* The Backend `OAuthApplication` object holds information about an OAuth application.
*/
export class OAuthApplication {
constructor(
/**
* The unique identifier for the OAuth application.
*/
readonly id: string,
/**
* The ID of the instance that this OAuth application belongs to.
*/
readonly instanceId: string,
/**
* The name of the new OAuth application.
*/
readonly name: string,
/**
* The ID of the client associated with the OAuth application.
*/
readonly clientId: string,
/**
* The public-facing URL of the OAuth application, often shown on consent screens.
*/
readonly clientUri: string | null,
/**
* The URL of the image or logo representing the OAuth application.
*/
readonly clientImageUrl: string | null,
/**
* Specifies whether the OAuth application is dynamically registered.
*/
readonly dynamicallyRegistered: boolean,
/**
* Specifies whether the consent screen should be displayed in the authentication flow. Cannot be disabled for dynamically registered OAuth applications.
*/
readonly consentScreenEnabled: boolean,
/**
* Specifies whether the Proof Key of Code Exchange (PKCE) flow should be required in the authentication flow.
*/
readonly pkceRequired: boolean,
/**
* Indicates whether the client is public. If true, the Proof Key of Code Exchange (PKCE) flow can be used.
*/
readonly isPublic: boolean, // NOTE: `public` is reserved
/**
* Scopes for the new OAuth application.
*/
readonly scopes: string,
/**
* An array of redirect URIs of the new OAuth application.
*/
readonly redirectUris: Array<string>,
/**
* The URL used to authorize the user and obtain an authorization code.
*/
readonly authorizeUrl: string,
/**
* The URL used by the client to exchange an authorization code for an access token.
*/
readonly tokenFetchUrl: string,
/**
* The URL where the client can retrieve user information using an access token.
*/
readonly userInfoUrl: string,
/**
* The OpenID Connect discovery endpoint URL for this OAuth application.
*/
readonly discoveryUrl: string,
/**
* The URL used to introspect and validate issued access tokens.
*/
readonly tokenIntrospectionUrl: string,
/**
* The date when the OAuth application was first created.
*/
readonly createdAt: number,
/**
* The date when the OAuth application was last updated.
*/
readonly updatedAt: number,
/**
* The client secret associated with the OAuth application. Empty if public client.
*/
readonly clientSecret?: string,
) {}

Expand All@@ -25,6 +93,11 @@ export class OAuthApplication {
data.instance_id,
data.name,
data.client_id,
data.client_uri,
data.client_image_url,
data.dynamically_registered,
data.consent_screen_enabled,
data.pkce_required,
data.public,
data.scopes,
data.redirect_uris,
Expand Down