productivity
Auth0 MCP Integration for LangGraph
Connect Auth0 to LangGraph through the local KosmoKrator MCP gateway with scoped tools, credentials, and write policy.
Connect Auth0 to LangGraph
Run KosmoKrator integration calls from LangGraph nodes while preserving local credentials and permissions.
Use a graph node that calls the KosmoKrator CLI for deterministic steps or an MCP client for dynamic tool selection. The gateway is local, scoped to this integration, and starts with
--write=deny so LangGraph can inspect read-capable tools without receiving write access by default.
Auth0 MCP Config for LangGraph
Headless CLI calls fit repeatable graph edges; MCP fits exploratory agent nodes.
{
"mcpServers": {
"kosmokrator-auth-zero": {
"type": "stdio",
"command": "kosmo",
"args": [
"mcp:serve",
"--integration=auth-zero",
"--write=deny"
]
}
}
} Run the Gateway Manually
kosmokrator mcp:serve --integration=auth-zero --write=deny Why Use KosmoKrator Here
Expose only Auth0 instead of a broad multi-service tool list.
Reuse credentials already configured for the KosmoKrator CLI and Lua runtime.
Start read-only, then opt into ask or allow for trusted workspaces.
Auth0 Tools Visible to LangGraph
LangGraph sees stable MCP tool names generated from the Auth0 integration catalog.
| MCP tool | Source function | Type | Description |
|---|---|---|---|
integration__auth_zero__auth_zero_list_users | auth-zero.auth_zero_list_users | Read | List users in the Auth0 tenant. Supports search with Lucene syntax, pagination, and sorting. |
integration__auth_zero__auth_zero_get_user | auth-zero.auth_zero_get_user | Read | Retrieve a single Auth0 user by their user ID (e.g. "auth0|abc123"). |
integration__auth_zero__auth_zero_create_user | auth-zero.auth_zero_create_user | Write | Create a new user in Auth0. Requires email, password, and the connection name (database connection). |
integration__auth_zero__auth_zero_list_connections | auth-zero.auth_zero_list_connections | Read | List identity connections configured in the Auth0 tenant. Optionally filter by strategy (e.g. "auth0", "google-oauth2"). |
integration__auth_zero__auth_zero_list_roles | auth-zero.auth_zero_list_roles | Read | List roles defined in the Auth0 tenant with optional pagination. |
integration__auth_zero__auth_zero_get_tenant_settings | auth-zero.auth_zero_get_tenant_settings | Read | Retrieve the Auth0 tenant settings (session lifetime, idle timeout, default directory, etc.). |
integration__auth_zero__auth_zero_get_current_user | auth-zero.auth_zero_get_current_user | Read | Retrieve the profile of the currently authenticated user. Also serves as a health check for the Auth0 connection. |