Firetool

Home / Features / Firebase Authentication

Firebase Authentication

A Firebase Authentication user manager on your desktop

Find a user by email, phone number or UID, fix their account, set custom claims and make a password reset link, in the same app you use for your Firestore data. Every change is checked against your project rules and written to the audit log.

Why a user manager

Support work on user accounts, without writing a script

Most Authentication work is small and urgent: a customer can't sign in, an address was typed wrong, an account has to be switched off today, or someone needs an admin claim. Firetool puts the users of each project one click away, under the project in the sidebar. It talks straight to Google's Authentication API from your computer, with your own Google sign-in, a service account key or the local Auth emulator.

Find and list

Get to the right account fast

Type an email address, a phone number starting with + or a UID and press Find. Firetool works out which one you typed. List all users shows them 500 at a time, newest first, and Load more brings the next 500.

  • Columns for UID, email, phone, name, sign-in providers, created, last sign-in, status and custom claims
  • The list loads as soon as you open Authentication
  • Listing and finding users work in the Free edition, and cost no Firestore reads
The Authentication tab in Firetool listing users with their UID, email, phone, sign-in provider, created date and Active status

What you can change

Everything a support desk needs on one screen

Create and edit users

New user takes an email, phone number, display name and password, and an optional UID of your own. Click a UID to edit the account, set a new password or mark the email as verified.

Disable, enable, delete

Tick one user or many, then Disable, Enable or Delete. Deleting can't be undone, so Firetool asks first and keeps a copy of each account's details in the audit log.

Custom claims

Edit claims as a JSON object, such as {"role": "support"}, for use in your security rules. Firetool checks that it's a valid object before saving.

Sign out everywhere

Signs the selected users out on every device by revoking their refresh tokens. Useful after a password change or a lost phone.

Reset and verification links

Password reset link and Verification link make a one-time link for you to copy. Firebase doesn't email it: you send it to the user yourself.

Export to CSV

Export CSV saves the users you have listed or found, with their claims, status and dates. To export every user, list them all first with Load more.

Safety

User changes follow the same rules as your data

Authentication changes go through the same checks as Firestore writes. A Viewer can look users up but every change button stays off. A project marked read-only refuses user changes for everyone. In a project marked production, deleting users asks you to type the project ID first.

  • The audit log records who created, changed or deleted which user, and which fields changed
  • Passwords never go into the log, and for a reset or verification link only the fact that one was made
  • The project's delete limit and "ask for a reason" rule apply to users too
Firetool's Confirm a production change dialog asking for the project ID and a reason

How it works

From sign-in to a fixed account in three steps

Connect

Continue with Google, add a service account key, or connect to the emulator with its Auth emulator address (usually 127.0.0.1:9099).

Open Authentication

Expand a project in the sidebar and click Authentication. The users are listed straight away.

Find and fix

Find the user, click their UID, change what's wrong and choose Save changes. The audit log keeps a record.

Listing and finding users is free. Creating, editing, disabling, deleting, making links and exporting need Pro, which every new install can try for 30 days. Scripts can reach users too: in JS Query, auth.getUserByEmail(), auth.listUsers(), auth.setCustomUserClaims() and similar calls work like the Admin SDK and pass the same checks.

Questions

Questions about managing users

Can Firetool import users into Firebase Authentication?

No. Firetool creates users one at a time with New user, or from a JS Query script with auth.createUser(). It has no bulk user import. Use the Firebase CLI or the Admin SDK's importUsers for that.

Does the CSV export include every user in the project?

It includes the users currently shown in the Authentication tab. List all users shows 500 at a time; press Load more until the button goes away, then choose Export CSV to save them all. A Find shows only the matching user, so its export has just that user.

Does Firetool email the password reset link to the user?

No. Firetool asks Firebase for the link and shows it to you with a Copy link button. Firebase sends no email. Anyone with the link can use it, so send it only to that user.

Can I undo deleting a user?

No. Deleted accounts can't be restored from Firetool, and the audit log's Restore works only for Firestore documents. The log does keep a copy of each deleted account's details (up to 1,000 accounts per delete), so you can see what was removed.

Try it on your own data

Free for Windows, macOS and Linux, with every Pro feature for the first 30 days.