Skip to content
Back to skills

Argocd Login

ASecurity

ArgoCD CLI authentication with SSO. Provides argocd login command, gRPC-Web configuration, and post-login operations. Use when user mentions ArgoCD login, argocd authentication, SSO auth, or accessing ArgoCD applications and clusters.

  • 58 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added February 8, 2026
devopsgobashkubernetesterraformgitci/cdsecuritydocumentation

Works with

  • cli
  • mcp

Security analysis

A100/100

Scanned February 12, 2026

npx -y skills add laurigates/claude-plugins --skill argocd-login --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Argocd Login?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Argocd Login
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/laurigates-argocd-login/badge)](https://www.skillsdirectory.com/skills/laurigates-argocd-login)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
model: haiku
created: 2025-12-16
modified: 2026-02-06
reviewed: 2025-12-16
name: argocd-login
description: |
  ArgoCD CLI authentication with SSO. Provides argocd login command, gRPC-Web
  configuration, and post-login operations. Use when user mentions ArgoCD login,
  argocd authentication, SSO auth, or accessing ArgoCD applications and clusters.
allowed-tools: Bash, Read, Grep, Glob
---

# ArgoCD CLI Login

ArgoCD CLI authentication with SSO for the Data Portal cluster.

## When to Use

Use this skill automatically when:
- User requests ArgoCD login or authentication
- User mentions accessing ArgoCD cluster or applications
- User needs to interact with ArgoCD CLI tools
- Authentication errors occur when using ArgoCD commands

## Authentication Command

```bash
argocd login argocd.dataportal.fi --grpc-web --sso
```

### Command Breakdown

- `argocd.dataportal.fi` - Data Portal ArgoCD server endpoint
- `--grpc-web` - Enable gRPC-Web protocol (required for web-based SSO)
- `--sso` - Use Single Sign-On authentication (opens browser for OAuth2 flow)

## Usage Flow

1. **Detect authentication need:**
   - User explicitly requests login
   - ArgoCD command fails with authentication error
   - User mentions accessing ArgoCD cluster

2. **Execute login command:**
   ```bash
   argocd login argocd.dataportal.fi --grpc-web --sso
   ```

3. **Guide user through SSO:**
   - Command will open browser automatically
   - User completes SSO authentication in browser
   - CLI receives token upon successful authentication
   - Session is stored in `~/.config/argocd/config`

4. **Verify authentication:**
   ```bash
   argocd account get-user-info
   ```

## Common ArgoCD Operations (Post-Login)

### Application Management
```bash
# List applications
argocd app list

# Get application details
argocd app get <app-name>

# Sync application
argocd app sync <app-name>

# View application resources
argocd app resources <app-name>
```

### Cluster Information
```bash
# List clusters
argocd cluster list

# Get cluster info
argocd cluster get <cluster-name>
```

### Project Management
```bash
# List projects
argocd proj list

# Get project details
argocd proj get <project-name>
```

## Authentication Session

- **Session storage:** `~/.config/argocd/config`
- **Session persistence:** Tokens have configurable expiration
- **Re-authentication:** Run login command again when session expires

## Troubleshooting

### Browser doesn't open
- Manually open the URL printed by the CLI
- Complete authentication in browser
- Token will be received by CLI

### gRPC-Web errors
- Ensure `--grpc-web` flag is present
- Check network connectivity to `argocd.dataportal.fi`
- Verify firewall/proxy settings allow gRPC-Web traffic

### SSO failures
- Verify SSO provider is accessible
- Check browser for authentication prompts
- Ensure popup blockers aren't interfering
- Try incognito/private browsing mode

### Token expiration
- Re-run login command: `argocd login argocd.dataportal.fi --grpc-web --sso`
- Check token validity: `argocd account get-user-info`

## Integration with ArgoCD MCP

This skill complements the ArgoCD MCP server tools:
- MCP tools (`mcp__argocd-mcp__*`) require authenticated CLI session
- Use this skill to establish authentication before MCP operations
- Both use same configuration (`~/.config/argocd/config`)

## Security Considerations

- **Token storage:** CLI tokens stored locally in config file
- **Token scope:** Full ArgoCD access (read/write based on RBAC)
- **Token rotation:** Re-authenticate periodically for security
- **Shared sessions:** CLI and MCP share authentication state

## Example Interaction

```
User: "I need to check the status of my ArgoCD applications"

Claude: I'll log you into ArgoCD first, then check the application status.

[Executes: argocd login argocd.dataportal.fi --grpc-web --sso]

Please complete the SSO authentication in the browser that just opened.
Once authenticated, I'll retrieve your application list.

[After successful auth, executes: argocd app list]

Here are your applications:
...
```

## Related Skills

- **Kubernetes Operations** - For kubectl operations on ArgoCD-managed resources
- **GitHub Actions Inspection** - For CI/CD pipeline integration with ArgoCD
- **Infrastructure Terraform** - For infrastructure managed by ArgoCD applications

## References

- [ArgoCD CLI Documentation](https://argo-cd.readthedocs.io/en/stable/user-guide/commands/argocd/)
- [ArgoCD SSO Configuration](https://argo-cd.readthedocs.io/en/stable/operator-manual/user-management/#sso)
- [gRPC-Web Protocol](https://github.com/grpc/grpc-web)

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…