CommandCodeAI / CommandCodeAI/command-code
studio: Improve API Keys area to better understand where and how used
Dieses Issue hat noch niemand übernommen.
- Vorherrschende Sprache
- Keine Sprachdaten
- Sterne
- 4k
- Forks
- 350
- PR-Merge-Kennzahlen
- Keine gemergten PRs in 30 T.
Beschreibung
Feature Description
Recently, I needed to delete an API key. When I went into API Keys area of the Studio, I saw I had 8-10 keys dating back to late 2025.
I found it difficult to know:
- which keys were active (last used)
- if they expire/d (doesn't seem they do)
- the names were not meaningful nor did it match the name in the
auth.jsonCommand Code config settings - I could not edit the name to make them meaningful to me
- recent usage of keys and where used (to identify if any key leaked and used by some strange IP address or geo)
So, I ended up just deleting all keys one by one and starting over from scratch, but then I realized:
- the name in auth.json did not match
- and the only way I could identify a key was by some UTC timestamp so I could tell one cli on one machine was an older key than another because I knew I created one before the other
Use Case
In general, be useful to:
- know which key used where
- add a description for the key purpose
- names match installed name in auth.json
- edit names to be descriptive
- show some recent use (time, IP address, geo) to identify if any leaks
- pause key
- rotate key (vs delete and create and edit name a description)
Could take some cues from Unkey API Key management features. See: https://www.unkey.com/docs/platform/apis/keys
Additional Context
No response
How important is this to you?
Medium. But, this will increase if I use Command Code API more for inference in apps vs just the cli used on two devices or if I want to distinguish between a key for cli and a key for desktop.
Beitragsleitfaden
Für dieses Repository ist kein Beitragsleitfaden indexiert
Erste Schritte
- Lies das ganze Issue und danach den Beitragsleitfaden des Projekts.
- Schreib ins Issue, dass du es übernimmst — das erspart doppelte Arbeit.
- Forke das Repository und arbeite in einem Branch.
- Öffne einen Pull Request, der die Issue-Nummer nennt.
Rechercherichtung
Beginne mit der Überprüfung des Bereichs „Studio API Keys“ und der Frage, wie Schlüsselnamen mit der Command Code-Konfiguration in auth.json zusammenhängen. Das Issue beschreibt mehrere mögliche Funktionen, daher müssen Umfang und Abschlusskriterien eingegrenzt werden, bevor mit der Implementierung begonnen werden kann.
Vom Indexierungsmodell aus dem Issue-Text verfasst.
Bewertung
- Bereich
- authentication
- Issue-Typ
- Feature
- Schwierigkeit
- 5/5
- Geschätzter Aufwand
- Über eine Woche
- Aktivitätsstatus
- Ruhig
- Klarheit
- Muss geklärt werden
- Anfängerfreundlichkeit
- 35/100