Skip to content
Proud to collaborate with Microsoft for Startups

lovable.project.bootstrap-auth ​

Provision Sign in with Orkestia for a Lovable project

Provision the identity tenant a Lovable app signs its end-users in with.

Returns the client_key and the hosted-login integration block the app needs — the app never handles a password, and the login page is Orkestia's, not the vibecoded app's.

Run this from Lovable's chat over MCP before the app is deployed: pass the Lovable preview origin as dev_origin so sign-in works while building, then lovable.project.go-live registers the production callback.

Overview ​

PropertyValue
Workflow typeDag
LibraryApp-lovable
Version1.0

Input Schema ​

FieldTypeRequiredDefaultDescription
actorstringNo—Member or agent provisioning the app.
organization_uuiduuidYes—Organization that will own the identity app.
app_namestringYes—Human-readable name for the identity app.
redirect_urislistNo—OAuth callback URLs; production ones can be added at go-live.
modestringNo—dev (default) or live. dev restricts sign-in to an email allowlist.
dev_originstringNo—Lovable preview origin to allow during the build, e.g. https://<id>.lovable.app

Output Schema ​

FieldTypeRequiredDefaultDescription
organization_uuiduuidYes——
identity_app_uuiduuidNo——
client_uuiduuidNo——
client_keystringNo——
integrationdictNo——
groups_seededbooleanNo——
dev_origin_allowedbooleanNo——
provision_appjsonNo——
seed_groupsjsonNo——
allow_dev_originjsonNo——
actorstringNo——
app_namestringNo——
redirect_urislistNo——
modestringNo——
dev_originstringNo——
failure_reasonstringNo——
failure_typestringNo——
failed_actionstringNo——
failed_at_statestringNo——
failed_stepjsonNo——
failed_layerintegerNo——
errorstringNo——
error_typestringNo——

DAG Layers ​

#LayerStepsCompensation
1provisionidentity.app.provision—
2groupsidentity.end-user.group.seed-defaults—
3dev-originidentity.app.allow-dev-origin—

Execution Flow ​

Sub-workflows ​

Sub-workflowStep name
identity.app.provisionprovision_app
identity.end-user.group.seed-defaultsseed_groups
identity.app.allow-dev-originallow_dev_origin

API Usage ​

bash
POST /api/workflows/start
Content-Type: application/json

{
  "workflow_type": "lovable.project.bootstrap-auth",
  "initial_data": {
    "organization_uuid": "value",
    "app_name": "value"
  }
}