Skip to main content

User based API keys

There’s currently no way to make user based API key. It’s only possible to create them on an organization level and it requires us to micro-manage API keys and their permissions in order to distribute them to teams (e.g. for usage with spacectl & terraform login for the registry).

It would be good to allow users to create their own API keys which are immediately bound to the permissions they have (and change with permission changes of the user they’d get later).

Status: ⚙️ In Progress11 comments

Log in to comment and vote

Comments11

  • Black Breeze

    •

    Sep 2, 2025

    While it sounds perfectly reasonable in theory, I would like to understand what is the use case that made you ask for this feature?

  • Yellow Chili

    •

    Nov 24, 2025

    •

    Merged request

    •

    2 votes

    User scoped API keys for scripts and spacectl

    We’d like user scoped API keys so each engineer can authenticate to Spacelift and spacectl with their own credentials, make scripting and testing easier, and keep clear audit trails. Keys should inherit the user’s permissions and be revoked automatically when the user is deactivated.