Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Support finer control on token lifetime #17395

Labels
customer-requestedDO NOT USE. Instead, add to the project and fill in "Customer".
@stirby

Description

@stirby

A customer wants to create session tokens for service accounts responsible for runningcoding agents in workspaces. In their deployment, they want to set a strict TTL for any token a user can create without restricting administrators. However, this doesn't mean administrators should havezero restrictions on token lifetimes, as this poses a security risk.

In short, the deployment-levelMAX_TOKEN_LIFETIME is too broadly enforced.

We should expect the demand for this use case to increase as we roll agentic AI out.

Example of desired behavior:

  • I, as a user, get a 24 hour token when I open a new session via the CLI.
  • I, as a user, can create tokens in the dashboard and CLI with a lifetime no longer than 72 hours.
  • I, as an administrator, can create tokens for myself that last up to 7 days.
  • I, as an administrator, can create tokens on the behalf of users that last up to 7 days.

Metadata

Metadata

Assignees

No one assigned

    Labels

    customer-requestedDO NOT USE. Instead, add to the project and fill in "Customer".

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions


      [8]ページ先頭

      ©2009-2025 Movatter.jp