Auth Setup

goldsky-io/goldsky-agent/skills/auth-setup

作者 goldsky-ioaa52f88312de无许可证12 个星标收录于 2026年10月9日更新于 2026年10月9日仓库今天更新

Set up Goldsky CLI authentication and project configuration. Use this skill when the user needs to: install the goldsky CLI (what's the official install command?), run goldsky login (including when the browser opens but 'authentication failed'), run goldsky project list and see 'not logged in' or 'unauthorized', switch between Goldsky projects, check which project they're currently authenticated to, or fix 'unauthorized' errors when running goldsky turbo commands. Also use for 'walk me through setting up goldsky CLI from scratch for the first time', and when they just installed Goldsky and say 'Set it up and help me get started'. If any other Goldsky skill hits an auth error, redirect here first.

包含脚本DevOps & Cloud
AI 生成的概览

安装 Goldsky CLI,并引导完成浏览器登录与项目验证,用于 Goldsky 管道和子图。

功能
使用随附的安装脚本安装 Goldsky CLI、Compose 和 Turbo,然后运行基于浏览器的登录流程,并通过项目列表命令验证身份认证。它还涵盖项目创建、用户邀请、账号切换以及常见认证错误的排查。最终产出配置完成且已认证的 Goldsky 环境以及一份设置摘要。
适用场景
当用户需要安装 Goldsky CLI、首次登录、解决“未登录”或“未授权”错误,或在 Goldsky 项目之间切换时使用。当其他 Goldsky 技能遇到认证失败时,也会重定向到此处。
运行要求
macOS、Linux 或带 WSL 的 Windows;Bash、curl、CA 证书、标准 Unix 工具、互联网访问以及可写的主目录。Goldsky 账号在登录过程中通过浏览器创建。随附可执行安装脚本(scripts/install.sh 和 scripts/install.ps1)。

Goldsky Authentication & Project Setup

Set up the Goldsky CLI, authenticate your account, and configure projects for your pipelines and subgraphs.

Prerequisites

  • macOS, Linux, or Windows with WSL (see Step 1 for binary compatibility)
  • Internet connection
  • A Goldsky account. Creating one happens in the browser during Step 3. Do not send the user to sign up as a separate step.

Authentication Workflow

Follow this workflow and verify each step. Execute commands and check results.

Step 1: Install and verify the CLI

Install missing tools yourself. Do not ask the user to install binaries or enter a sudo password. You run login in Step 3. The user only approves it in the browser.

On macOS and Linux (including WSL), run the bundled installer [blocked] from this skill's directory. Resolve that path yourself. Do not ask the user where it is.

bash
bash scripts/install.sh

The default installs Goldsky, Compose, and Turbo. Pass cli when only the base CLI is needed. For a Compose-only or Turbo-only task, pass compose or turbo; both include the base Goldsky CLI. The script uses user-writable directories, disables installation prompts even in a PTY, checks download failures and empty responses, and requires each requested binary to run successfully. It reuses working installations and repairs broken ones. No sudo or login is needed.

Every new shell/tool call must restore PATH, including authentication and project commands below. An export in a previous tool call does not persist:

bash
export PATH="$HOME/.local/bin:$HOME/.goldsky/bin:$PATH"goldsky --versiongoldsky compose --versiongoldsky turbo --version

Check only the components requested. Do not trigger Turbo's interactive auto-installer when its binary is absent. Do not report setup complete if the installer or a required version check fails.

Platform limits: Goldsky and Compose publish macOS Intel/Apple Silicon and Linux x64/ARM64 binaries. The current Linux Turbo binary requires x64 and glibc 2.39+ (for example Ubuntu 24.04). A full install on Linux ARM64, older glibc, or musl must report incomplete; compose can still be installed separately. These are upstream binary limits, not reasons to ask for sudo or silently omit Turbo. The current Turbo Mac binary is Apple Silicon-only; Intel Macs can install Goldsky and Compose, but a full install must report incomplete.

Windows: the complete toolset currently runs inside WSL, not native PowerShell or Git Bash: Compose has no published Windows binary. Use an existing x64 Ubuntu 24.04+ WSL distribution for all three tools. See Windows setup [blocked] for PowerShell invocation and prerequisites. Keep installation, subsequent CLI commands, project files, and goldsky login in the same WSL environment. Run login yourself there. Installing/enabling WSL itself may require administrator access and a reboot; do not claim that prerequisite can always be automated without intervention.

Prerequisites inside the selected environment: Bash, curl, CA certificates, standard Unix utilities, internet access, and a writable home directory. If an environment lacks these, report the missing prerequisite instead of claiming installation succeeded.

Step 2: Check Authentication Status

bash
goldsky project list 2>&1

Already logged in: Output shows a table with project IDs and Names. Skip to Step 4.

Not logged in: Output contains Make sure to run 'goldsky login'. Continue to Step 3.

Step 3: Log in

Never handle the user's API token in the chat. A token pasted into the conversation ends up in the transcript and is sent to the model. Do not ask for one, and do not pass --token.

Run goldsky login yourself, with PATH restored, and leave it running for up to 5 minutes. It prints a URL, opens the browser, and writes the token to disk. The token is not printed. The user only approves the login in that browser, on this same machine. Creating an account or choosing a project happens there too. If the browser does not open, open the printed URL yourself. Give the user that URL only when you cannot open a browser.

If this host kills the command before login finishes, run it again. Hand the user the command only when you have no shell. Then verify (Step 4).

Step 4: Verify Login

ALWAYS verify after login:

bash
goldsky project list

Success: Exit code 0, shows table with projects

Failure indicators:

  • Make sure to run 'goldsky login' still appears
  • invalid token or unauthorized

If verification fails, run goldsky login again.

Completion Summary

After successful setup, provide a summary to the user:

## Setup Complete
**What was done:**- ✓ Goldsky CLI installed (version X.X.X)- Turbo: verified version, not requested, or explicit installation failure- Compose: verified version, not requested, or explicit installation failure- ✓ Authenticated to Goldsky- ✓ Connected to project: [project-name]
**Your available projects:**[List projects from goldsky project list output]
**Next steps - try these skills:**- `/secrets` - Set up credentials for pipeline sinks (PostgreSQL, ClickHouse, Kafka)- Ask "create a pipeline" to start building data pipelines- Ask "deploy a subgraph" to deploy a subgraph to Goldsky

If they have not said what they are trying to do, ask, and suggest only jobs the installed skills can do. Do not create a secret, pipeline, subgraph, or deployment until they pick one and agree.

Command Reference

CommandPurposeKey Flags
goldsky loginAuthenticate with GoldskyOpens the browser. Do not pass --token
goldsky logoutRemove local credentials
goldsky project listList all projects you belong to
goldsky project createCreate a new project--name (required)
goldsky project users listList users in current project
goldsky project users inviteInvite user to project--emails, --role

Common Patterns

Create a New Project

bash
goldsky project create --name "my-new-project"

Invite Team Members

bash
goldsky project users invite --emails [email protected] --role Editor

Available roles: Owner, Admin, Editor, Viewer

Switching accounts

bash
goldsky logoutgoldsky login# MUST verify after: goldsky project list

Error Patterns

PatternMeaning
Make sure to run 'goldsky login'Not authenticated
invalid token / unauthorizedToken is incorrect or expired
Permission denied / 403User lacks required role
token expired / session expiredNeed to re-authenticate

Troubleshooting

IssueAction
Installer asks for confirmation or sudoUse the bundled installer, which creates a writable destination and passes -f. Do not retry with sudo
turbo or compose is missing or cannot runRe-run the bundled installer for that component; check its exit status and platform requirements
Not logged inRun goldsky login yourself and leave it running until the browser login finishes
Invalid tokenRun goldsky login again. Do not ask for a token
Permission deniedUser needs role upgrade from project Owner/Admin
Session expiredRun goldsky login again

Related

After authentication is complete, suggest next steps:

  • /turbo-builder — Build and deploy a new pipeline interactively
  • /datasets — Find the right dataset for your use case
  • /secrets — Set up credentials for pipeline sinks (PostgreSQL, ClickHouse, Kafka, etc.)

来源与署名

来源:goldsky-io/goldsky-agent位于skills/auth-setup提交aa52f88

许可证: 无许可证

内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。

举报或申请下架