"Implement cookie-based token storage using @aptx/token-store-cookie. Use when code needs to store authentication tokens in browser cookies with: (1) Configurable token/meta cookie names, (2) Automatic expiresAt to cookie expires synchronization, (3) Cookie options (path/sameSite/secure), (4) createCookieTokenStore API integration"
Resources
1Install
npx skillscat add haibaraaiaptx/aptx-skill/aptx-token-store-cookie Install via the SkillsCat registry.
SKILL.md
aptx-token-store-cookie
Quick Start
Create store with default configuration:
import { createCookieTokenStore } from "@aptx/token-store-cookie";
const store = createCookieTokenStore({
tokenKey: "token",
metaKey: "token_meta",
syncExpiryFromMeta: true,
cookie: {
path: "/",
sameSite: "lax",
secure: true,
},
});SSR / Node 环境说明
@aptx/token-store-cookie 基于 js-cookie,属于浏览器实现,不适用于 SSR/Node。
SSR 场景推荐:
- 每个 SSR request 创建自己的
TokenStore(request-scoped),从入站Cookie读取 token,并通过Set-Cookie写回响应。 - 可使用
@aptx/token-store-ssr-cookie(本仓库新增)作为 SSR cookie store。
Implementation Workflow
When integrating cookie token storage:
- Create store using
createCookieTokenStore({ tokenKey, metaKey, cookie, syncExpiryFromMeta }) - Keep
syncExpiryFromMeta: true(default) to auto-syncmeta.expiresAt→ cookieexpires - Set
syncExpiryFromMeta: falseonly if gateway controls cookie expiration independently - Inject store into
@aptx/api-plugin-auth'sstorefield - Test: token/meta I/O, clear, expiry sync, and disabled sync scenarios
Documentation
- API Reference - Method signatures and descriptions
- Configuration - All options and expiry sync rules
- Testing - Mock patterns, validation examples, and test coverage checklist
- Extensions - Custom fields and type imports