Acquire one credential (best-effort)
run_auth_flowGet a read-only plan for acquiring one credential on a target: the provider URL, exact non-interactive login command, and whether it already exists.
Instructions
Return the acquisition plan for one credential on a target: the provider URL, the exact non-interactive command when one exists (e.g. opencode auth login, opencode mcp auth vercel, gh auth login), and whether it is already present. Read-only and value-blind: it emits guidance and re-checks presence with one read-only probe; it does not run the commands or handle secret values. Parameter semantics: var must be an env var name returned by list_required_credentials (unknown names error); target selects the machine and its home is where the value should be written. Use it for a single credential; it does not replace that listing.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| var | Yes | Credential env var name from list_required_credentials (e.g. OPENCODE_API_KEY). | |
| target | Yes | The machine to operate on: this host (local) or a remote host over SSH (ssh). |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| url | No | Provider URL to open. | |
| var | Yes | Credential being acquired. | |
| next | Yes | What to do next. | |
| method | Yes | Acquisition method. | |
| target | Yes | Label of the target. | |
| command | No | Command for the agent/user to run. | |
| present | Yes | Whether the credential is present now. | |
| verified | Yes | True when the credential is present and ready. |