AltLLM Portal API Keys
Portal API key lifecycle management for the local altllm CLI.
Shared Setup
Before the first
altllmcommand in a fresh checkout, read and follow:
../_shared/preflight.md../_shared/session-and-target.md
Command Index
| Command | Purpose |
|---|---|
list-api-keys | List active and disabled keys |
create-api-key | Create a new key, optionally with a model allowlist |
get-api-key | Inspect one key |
update-api-key | Rename a key, change status, or replace the model allowlist |
revoke-api-key | Permanently revoke a key |
Rules
create-api-keyreturns the full key only once.- If no model allowlist is passed, the Portal API applies its default AltLLM model set.
- Key permissions narrow accessible models, but gateway balance and tier checks still apply.
- Flex users can allowlist normal AltLLM models and Flex-only
altllm-flex-*models; backend access checks remain authoritative. update-api-key --status disabledis reversible.revoke-api-keyis permanent.keysis an alias forlist-api-keys.
Known Production Limitation
- The single-key Portal API routes are currently broken in production.
- Affected commands:
get-api-keyupdate-api-keyrevoke-api-key
- Commands that still work:
list-api-keyscreate-api-key
- Do not create temporary production smoke keys unless
revoke-api-keyis healthy or an approved cleanup path exists.
Reference
See references/cli-reference.md for command examples and representative responses.

