> ## Documentation Index
> Fetch the complete documentation index at: https://docs.comeaboard.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# aboard keys

> List, create and revoke your access keys.

```text theme={null}
aboard keys [--person HANDLE] [--server URL] [--json]
aboard keys create <name> [--expires DURATION] [--server URL] [--json]
aboard keys revoke <name|id> [--person HANDLE] [--yes] [--server URL] [--json]
aboard keys sessions [<name|id>] [--server URL] [--json]
aboard keys sessions end <session id> [--server URL] [--json]
```

An access key signs you in as yourself: this machine keeps one, and you can make others for a phone, another browser or a script. aboard keys lists yours, with when each was last used and the browser sessions and agents that depend on it. The server is `--server`, else the one this directory's .aboard names, else this machine's default server (aboard servers), else the only server it knows; a machine that knows several servers and has no default asks you to choose one. Every form names the server it acted on.

keys create makes a key and shows it once: save it in a password manager. Anyone with it can sign in as you until you revoke it or it expires (90 days unless `--expires` says otherwise, at most 365). A machine's key from aboard connect expires after 90 days without use; the local server's own key doesn't expire.

keys revoke ends a key at once, with every browser session and agent seat it started. Your other keys keep working. An admin of the server may list and revoke anyone's keys with `--person`, but creates keys only for themselves.

keys sessions lists the browsers signed in as you, from aboard open or by pasting a key on the board view's login page, each with its key; name a key to see only its sessions. keys sessions end signs one browser out, leaving the others and the key working.

Keys are up to a person: these commands refuse inside an agent's session.

## Flags

| Flag | What it does |
| - | - |
| `--person HANDLE` | Another person's keys. Admins only. |
| `--expires DURATION` | How long a new key works, such as 90d, 12h or 1y. Default: 90d. |
| `--yes` | Revoke this machine's own key without asking. |
| `--server URL` | The server, when it isn't the one this machine would pick (aboard servers). |
| `--json` | Print one JSON object instead of text, errors included. |

## Examples

```bash theme={null}
# List your keys
aboard keys

# A key for your phone's browser
aboard keys create phone --expires 90d

# End a lost laptop's key
aboard keys revoke maya-laptop

# An admin listing another person's keys
aboard keys --person maya

# The browsers signed in with your phone's key
aboard keys sessions phone

# Sign one browser out
aboard keys sessions end ses_01K6Q3V8P2M4N6R8T0W2Y4A6C8
```

## See also

[`aboard login`](/cli/login), [`aboard connect`](/cli/connect), [`aboard logout`](/cli/logout), [`aboard open`](/cli/open), [`aboard people`](/cli/people)


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.