You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Commit 684b228
Browse filesBrowse the repository at this point in the historyBrowse files
Copy file name to clipboardExpand all lines: apps/docs/content/docs/cli/credentials.mdx
+88Lines changed: 88 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -37,6 +37,94 @@ Disconnect Credential (OAuth login or personal API key required)
37
37
38
38
</CommandTable>
39
39
40
+
## List credential members
41
+
42
+
```bash
43
+
sim credentials members list <credentialId> [options]
44
+
```
45
+
46
+
List Credential Members (OAuth login or personal API key required)
47
+
48
+
**Arguments**
49
+
50
+
<CommandTable>
51
+
52
+
| Argument | Required | Description |
53
+
| --- | --- | --- |
54
+
|`credentialId`| Yes | Credential whose sharing grants are managed. |
55
+
56
+
</CommandTable>
57
+
58
+
**Options**
59
+
60
+
<CommandTable>
61
+
62
+
| Option | Required | Description |
63
+
| --- | --- | --- |
64
+
|`--limit <n>`| No | Maximum items to return (0 for everything). Defaults to `0`. |
65
+
|`--sort-by <value>`| No | Field used to sort the result. Sorting by `name` is case-sensitive and follows the storage collation, so do not rely on a case-insensitive order. Accepted values: `email`, `name`. |
|`--domain <value>`| Yes | Email domain already verified by this organization. |
583
+
|`--jit-provisioning-enabled`| No | Allow SSO sign-in to provision organization membership, subject to eligibility and available seats. |
584
+
|`--no-jit-provisioning-enabled`| No | Send --jit-provisioning-enabled as false. |
585
+
|`--mapping <json\|@file>`| No | Identity-provider claims mapped to user fields. (JSON, or @path / @- to read a file or stdin). |
586
+
|`--client-id <value>`| No | Identity provider client identifier. Available when providerType is oidc. Required when providerType is oidc. |
587
+
|`--client-secret <value\|@file>`| No | Write-only OIDC client secret; the redacted marker from providers get preserves an existing secret. Passing it inline exposes it to shell history and process listings. Required when --provider-type is oidc (@path / @- reads a file or stdin verbatim, including trailing newlines; @@value for a literal leading @). |
588
+
|`--scopes <json\|@file>`| No | OIDC scopes; offline_access is omitted. Available when providerType is oidc. (JSON, or @path / @- to read a file or stdin). |
589
+
|`--pkce`| No | Use PKCE for the authorization flow. Available when providerType is oidc. |
590
+
|`--no-pkce`| No | Send --pkce as false. |
591
+
|`--authorization-endpoint <value>`| No | Optional authorization endpoint; otherwise resolved through issuer discovery. Available when providerType is oidc. |
592
+
|`--token-endpoint <value>`| No | Optional token endpoint; otherwise resolved through issuer discovery. Available when providerType is oidc. |
593
+
|`--user-info-endpoint <value>`| No | Optional UserInfo endpoint. Available when providerType is oidc. |
594
+
|`--skip-user-info-endpoint`| No | Read identity claims from the ID token instead of calling UserInfo. Available when providerType is oidc. |
595
+
|`--no-skip-user-info-endpoint`| No | Send --skip-user-info-endpoint as false. |
596
+
|`--jwks-endpoint <value>`| No | Optional signing-key endpoint; otherwise resolved through issuer discovery. Available when providerType is oidc. |
597
+
|`--entry-point <value>`| No | Identity provider SAML sign-in endpoint. Available when providerType is saml. Required when providerType is saml. |
598
+
|`--cert <value>`| No | Identity provider signing certificate. Available when providerType is saml. Required when providerType is saml. |
599
+
|`--callback-url <value>`| No | SAML callback URL; defaults to this provider’s Sim callback. Available when providerType is saml. |
600
+
|`--audience <value>`| No | SAML audience; omission preserves the saved value. Available when providerType is saml. |
601
+
|`--want-assertions-signed`| No | Require signed assertions; omission preserves the saved value. Available when providerType is saml. |
602
+
|`--no-want-assertions-signed`| No | Send --want-assertions-signed as false. |
603
+
|`--signature-algorithm <value>`| No | Signature algorithm accepted by the SAML configuration validator; omission preserves the saved value. Available when providerType is saml. |
604
+
|`--digest-algorithm <value>`| No | Digest algorithm accepted by the SAML configuration validator; omission preserves the saved value. Available when providerType is saml. |
605
+
|`--identifier-format <value>`| No | SAML NameID format; omission clears the saved value. Available when providerType is saml. |
606
+
|`--idp-metadata <value>`| No | Identity provider metadata XML; omission clears the saved document. Available when providerType is saml. |
0 commit comments