> For the complete documentation index, see [llms.txt](https://doc.duaer.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://doc.duaer.com/integrations/builtin/credentials/auth0management.md).

# Set up Auth0 Management credentials in Duaer

Store Auth0 Management connection details in Duaer for digital-organization nodes to use at runtime. Secrets are protected by the instance encryption key and are not written into node parameters.
## Create an Auth0 machine-to-machine app <a href="#create-a-machine-to-machine-app" id="create-a-machine-to-machine-app"></a>

The Duaer Auth0 Management API credential exchanges a machine-to-machine app for a management token:

1. In the Auth0 Dashboard, open Applications, create a Machine to Machine app, authorize it for the Auth0 Management API, and tick only the scopes you need.
2. Put the app’s Domain, such as your-domain.eu.auth0.com, in Auth0 Domain, and Client ID and Client Secret in the credential.

Duaer has no dedicated node for this service. In the HTTP Request node, set Authentication to Predefined Credential Type and pick the Auth0 Management API credential. Refer to [custom operations](/integrations/custom-operations.md).

## Auth0 Management API fields in Duaer <a href="#auth0-management-api" id="auth0-management-api"></a>

In Duaer, choose Auth0 Management API when you create a credential, then fill in these fields:

- Auth0 Domain (required): Default: your-domain.eu.auth0.com.
- Client ID (required)
- Client Secret (required, secret)

When you save, Duaer tests the connection with these values.

## Save the connection in Duaer

Open Credentials and create Auth0 Management. Fill in the key, OAuth, or server fields. After you save, digital-organization nodes reference this credential instead of putting the secret in a parameter.

Credential values are protected by the instance encryption key. If you change or lose that key, stored credentials cannot be decrypted. See the hosting notes on encryption keys. 

## Who can use this credential

Who can see or edit it follows projects and roles. Do not paste secrets into chat or variables. External vaults are covered under external secrets.
## Questions

### Do Auth0 Management secret values appear in Duaer node parameters?

No. In Duaer, Auth0 Management secrets stay in the credential. Nodes only reference the credential. Execution records should not show the plaintext secret either.

### What usually stops a Auth0 Management credential from saving in Duaer?

Wrong fields, an OAuth callback that does not match the instance URL, or a role that cannot create credentials. Check the fields Auth0 Management expects, then confirm you can create credentials in that project.

