Skip to content

Password Protect OAuth Token Related Methods #1234

@JosephAllen

Description

@JosephAllen

Can we get a password parameter added to all of the http related call that use OAuth related tokens?

The key.json and/or local keychain concept it too easy to exploit.

Adding a password parameter to the various CLI methods would allow for the use of local encryption without exposing an org to a hacked Admin/Dev machine.

Yes, it would be possible to grab the password via a key logger, but simple password protection would be a significant security improvement over the current CLI.

Metadata

Metadata

Assignees

No one assigned

    Labels

    featureIssue or pull request for a new feature

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions