You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Commit 95faafd
Browse filesBrowse the repository at this point in the historyBrowse files
-`GOOGLE_WORKSPACE_CLI_CREDENTIALS_FILE` — Path to OAuth credentials JSON (no default; if unset, falls back to encrypted then plaintext credentials in `~/.config/gws/`)
64
+
-`GOOGLE_WORKSPACE_CLI_CREDENTIALS_FILE` — Path to OAuth credentials JSON (no default; if unset, falls back to credentials secured by the OS Keyring and encrypted in `~/.config/gws/`)
Copy file name to clipboardExpand all lines: README.md
+15-11Lines changed: 15 additions & 11 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -79,6 +79,12 @@ gws schema drive.files.list
79
79
# Dynamic help for any resource
80
80
gws drive files --help
81
81
gws drive files list --help
82
+
83
+
# Preview a request without sending it
84
+
gws chat spaces messages create \
85
+
--params '{"parent": "spaces/xyz"}' \
86
+
--json '{"text": "Hello world"}' \
87
+
--dry-run
82
88
```
83
89
84
90
## Authentication
@@ -87,20 +93,18 @@ The CLI supports three primary authentication workflows depending on your enviro
87
93
88
94
### 1. Interactive Auth (Local Desktop)
89
95
90
-
For interactive use on your personal machine where a web browser is available. By default, credentials are encrypted at rest using AES-256-GCM.
96
+
For interactive use on your personal machine where a web browser is available.
97
+
98
+
**Security**: By default, credentials and access tokens are encrypted at rest using AES-256-GCM. The encryption key is stored securely in your OS Keyring (Apple Keychain, Secret Service, or Windows Credential Manager). If a keyring is unavailable (e.g., headless Linux), it falls back to a strictly permissioned (`0600`) local key file.
91
99
92
-
**Google Cloud Setup:**
93
-
1. Create a project: `gcloud projects create my-gws-cli`
3. Create an OAuth consent screen at [Credentials/Consent](https://console.cloud.google.com/apis/credentials/consent).
96
-
4. Create an OAuth **Desktop app** Client ID at [Credentials](https://console.cloud.google.com/apis/credentials).
100
+
**Google Cloud Setup & Login:**
101
+
The CLI includes a built-in setup wizard to help you configure your Google Cloud Project, enable APIs, and generate the necessary OAuth credentials. Note that this requires the [`gcloud` CLI](https://cloud.google.com/sdk/docs/install) to be installed and authenticated (`gcloud auth login`).
0 commit comments