Logging in
Run the login command to authenticate:Your password is never shared with the CLI. The OAuth flow means the CLI only receives a scoped access token, not your credentials.
moneda auth status tells you which account is connected and when the token expires:
moneda auth login again and watch for the terminal to confirm.
Checking your session
To see if you’re currently logged in and which account is active:Logging out
To clear your stored credentials:moneda auth login again to use the CLI.
Using an API key instead
moneda auth login is the interactive path. For CI, cron, or a script, use an
API key — no browser, no session:
moneda api-key list shows what exists and
moneda api-key revoke --key-id <id> cuts one off on its next request.
Token storage
The CLI stores your OAuth token in:moneda auth logout deletes the local token and ends the CLI session, but it
does not revoke the token itself — a copy that leaked before you logged out
stays valid until it expires. To cut a client off immediately, disconnect the
connection: ask your AI assistant to list your connected agents and disconnect
the one you no longer trust (list_active_sessions / disconnect_connected_service).
A disconnected connection is refused by both the MCP server and the REST API on
the very next request.What’s next?
Command Reference
See all available CLI commands.
CLI Examples
Common workflows using the CLI.
Scopes
Understand what permissions the CLI requests.
REST API Authentication
How authentication works at the API level.
