Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
26 changes: 26 additions & 0 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
Expand Up @@ -2,6 +2,32 @@

Notable changes to AskKey are documented here, grouped by release and change type.

## [0.2.0] - 2026-10-05

### Added

- Claude Code support: AskKey adds itself through the official `claude mcp` CLI at user scope and installs credential discovery hooks in `~/.claude/settings.json`.
- The approval prompt shows the command that will run and its working directory; caller name and purpose are marked as declared by the agent.
- A first-run path: the welcome page leads from the first saved credential to connecting an agent, with a sample prompt to try.
- Credential templates and an import preview that shows permissions before anything is saved.

### Changed

- Permissions are named **Allow**, **Ask every time** and **Hidden**.
- A new visual design across the app: one neutral palette with an accent and a warning color, grouped lists, and the app icon on the welcome page, approval prompt and pending requests.
- Codex discovery now runs as a command hook, like the other clients, so Orca-managed Codex sessions keep its trust. Reconnect Codex once from **Agent access** after upgrading and trust the new hook.
- Access records keep only the executable name of an approved command, never its arguments or working directory.

### Fixed

- A rare failure when a client command closed its input before AskKey finished writing to it.

### Known limitations

- No backup or recovery. Keep the originals of your credentials elsewhere.
- The approval prompt does not yet list the environment variable names a credential is delivered as (#137).
- All limitations listed for 0.1.0 still apply.

## [0.1.0] - 2026-10-04

### Added
Expand Down
4 changes: 2 additions & 2 deletions README.md
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ A macOS menu bar app that keeps your credentials encrypted on your Mac and lets

English | [Simplified Chinese](README.zh-CN.md)

> **[Download the latest release](https://github.com/sudoHG/AskKey/releases/latest)** (notarized DMG, macOS 14+). Version 0.1 has no backup or recovery, so keep the originals of your credentials somewhere else.
> **[Download the latest release](https://github.com/sudoHG/AskKey/releases/latest)** (notarized DMG, macOS 14+). AskKey has no backup or recovery yet, so keep the originals of your credentials somewhere else.

<p align="center">
<img src="assets/readme/approval-prompt.png" width="300" alt="AskKey approval prompt: Claude Code wants to use Staging API to run ./deploy.sh, with the buttons Allow once, Allow for 30 minutes and Deny">
Expand Down Expand Up @@ -124,7 +124,7 @@ Quit Ask Key, download and verify the new DMG as described in [Install](#install

Quit Ask Key and delete `/Applications/Ask Key.app`. For each connected client, remove only the AskKey entries and owned files listed in [What setup writes](docs/client-integrations.md#what-setup-writes), including MCP configuration, discovery Hooks and AskKey-specific Hook trust settings (for example, for Claude Code, run `claude mcp remove askkey --scope user` and remove AskKey handlers from `~/.claude/settings.json`). Preserve unrelated client settings and Hooks. There is no in-app way to disconnect a client.

You can optionally erase the local credential library as well. **This permanently destroys all stored credentials and cannot be undone; v0.1 has no backup or recovery.** To do so, delete `~/Library/Application Support/AskKey` and use Keychain Access to delete the keychain item with service `com.sudohg.askkey.vault`.
You can optionally erase the local credential library as well. **This permanently destroys all stored credentials and cannot be undone; AskKey has no backup or recovery.** To do so, delete `~/Library/Application Support/AskKey` and use Keychain Access to delete the keychain item with service `com.sudohg.askkey.vault`.

## Build from source

Expand Down
4 changes: 2 additions & 2 deletions README.zh-CN.md
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@

[English](README.md) | 简体中文

> **[下载最新版本](https://github.com/sudoHG/AskKey/releases/latest)**(经过 Apple 公证的 DMG,需要 macOS 14 或更高版本)。v0.1 没有备份和恢复功能,请自行另存一份凭证原件。
> **[下载最新版本](https://github.com/sudoHG/AskKey/releases/latest)**(经过 Apple 公证的 DMG,需要 macOS 14 或更高版本)。请旨目前没有备份和恢复功能,请自行另存一份凭证原件。

<p align="center">
<img src="assets/readme/approval-prompt.png" width="300" alt="请旨的批准弹窗:Claude Code 想用 Staging API 运行 ./deploy.sh,下方是“允许本次”“允许 30 分钟”和“拒绝”按钮(截图为英文界面)">
Expand Down Expand Up @@ -124,7 +124,7 @@ AskKey 不保证的事:

退出请旨并删除 `/Applications/Ask Key.app`。对每个已连接的客户端,只移除 [What setup writes](docs/client-integrations.md#what-setup-writes) 中列出的 AskKey 配置项和专属文件,包括 MCP 配置、凭证查询 Hook 和 AskKey 专属的 Hook 信任设置(例如对于 Claude Code,运行 `claude mcp remove askkey --scope user` 并移除 `~/.claude/settings.json` 中的 AskKey 处理器)。保留其他客户端设置和 Hook。应用内没有断开客户端连接的功能。

你也可以选择一并删除本机凭证库。**这会永久销毁所有已保存的凭证,无法撤销;v0.1 没有备份和恢复功能。** 如需删除,请移除 `~/Library/Application Support/AskKey` 目录,并在“钥匙串访问”中删除服务名为 `com.sudohg.askkey.vault` 的钥匙串项目。
你也可以选择一并删除本机凭证库。**这会永久销毁所有已保存的凭证,无法撤销;请旨目前没有备份和恢复功能。** 如需删除,请移除 `~/Library/Application Support/AskKey` 目录,并在“钥匙串访问”中删除服务名为 `com.sudohg.askkey.vault` 的钥匙串项目。

## 从源码构建

Expand Down
2 changes: 1 addition & 1 deletion Sources/AskKeyBroker/AskKeyVersion.swift
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
// Product version read by scripts/product-version.sh; distinct from the Broker protocol version.
public enum AskKeyVersion {
public static let current = "0.1.0"
public static let current = "0.2.0"
}
Loading