Access &amp; Automation | Ghostable Desktop | Ghostable                              Menu

 Access &amp; Automation

   Devices, not accounts
---------------------

 Human access is attached to a project-scoped cryptographic device identity, not a Ghostable cloud login. The Access page lists known devices, status, environment roles, pending requests, and grants carried by the repository.

 A license seat and a project device are different concepts. Licensing controls who may use the paid Desktop client; project access controls which encrypted environments a specific identity may read or change.

![Ghostable Desktop project access page with human devices and agent credentials](https://ghostable.dev/images/generated/screenshots/ghostable-desktop-v3/project-access-light.png)![Ghostable Desktop project access page with human devices and agent credentials](https://ghostable.dev/images/generated/screenshots/ghostable-desktop-v3/project-access-dark.png)Human device grants and scoped Agents / Machines credentials are managed separately.

 Permission model
----------------

   `reader`  Read and decrypt values for the granted environment.

  `writer`  Reader permissions plus environment value changes.

  `grantor`  Reader permissions plus access-grant authority for the environment.

  `owner`  Read, write, grant, and owner authority across the project.

 Grantor and writer are intentionally separate. Give each device the smallest useful role and scope production separately from development.

 Requests and grants
-------------------

 A new device can create a signed request for an environment and role. An authorized device reviews the request details, requested scope, device identity, and reason before approving or denying it.

 Direct grants are appropriate when an approver has already verified the target identity through a trusted channel. Never grant access based only on a copied device name; verify the full device identifier or fingerprint when the risk warrants it.

 Revoke and maintain access
--------------------------

 Revocation removes a device's environment access in new repository state. Access maintenance also exposes operations for a device to leave a project and for administrators to remove public records that are already revoked.

  Revocation cannot erase prior knowledge

 A device that previously decrypted a value may retain it in memory, a local file, logs, or backups. Rotate sensitive credentials after revoking a lost, compromised, or departing device.

The last owner cannot leave, preserving a path to project administration.

 Agents and machines
-------------------

 The **Agents / Machines** area creates scoped automation credentials for CI, deploy systems, and other non-human runtimes. Choose the narrowest environment, role, and automation kind that can complete the job.

 The returned credential is a secret. Capture it once, store it in the target platform's protected secret store, and pass it as `GHOSTABLE_CI_TOKEN`. Do not commit it, paste it into tickets, or reuse a human device identity in CI.

 See [Automation Credentials](https://ghostable.dev/docs/3.x/workflows/deploy-tokens), [Continuous Integration](https://ghostable.dev/docs/3.x/automation-and-ci/continuous-integration), and [Deployments](https://ghostable.dev/docs/3.x/automation-and-ci/deployments) for engine-level examples.

 Commit access changes
---------------------

 Requests, approvals, grants, revocations, and public device records are repository changes. Inspect the Access page and Git diff, then commit and distribute the resulting `.ghostable/` state through the normal review path. Other clones do not see the new policy until they receive that commit.

    On this page

    [ ![Ghostable](https://ghostable.dev/images/logo-dark.svg) ![Ghostable](https://ghostable.dev/images/logo-light.svg) ](https://ghostable.dev)

   Desktop     [   CLI 3.x ](https://ghostable.dev/docs/3.x) [   Desktop ](https://ghostable.dev/docs/desktop)

  CLI 3.x introduction Documentation local first no login encrypted repository plaintext hosted service

  Installation Documentation brew homebrew npm npx linux windows PATH version update

  Start a new project Getting Started setup seed dotenv owner initialize

  Adopt an existing project Getting Started existing env import authoritative source adopt

  Onboard a team member Getting Started join request approve roles offboarding pull request

  Repository and storage Core Concepts .ghostable git conflict merge worktree private identity metadata

  Environments Core Concepts protected production preview staging push sync pull replace run mask-output

  Variables and promotions Core Concepts var promote copy context annotation key

  Access and devices Core Concepts identity reader writer grantor owner revoke rotate leave delete

  Daily development workflow Workflows pull diff validate review clean daily

  Review and secret scanning Workflows scan sarif github suppress secrets drift

  Hygiene and rotation Workflows rotation stale unused suppression environment key

  Automation credentials Automation &amp; CI GHOSTABLE\_CI\_TOKEN ci deploy credential powershell revoke replace

  Continuous integration Automation &amp; CI GitHub Actions fork pull request JSON stdout stderr exit codes mask-output

  Deployments Automation &amp; CI Forge Vapor Cloud provider CLI dry-run preserve remote keys temporary files

  Validation Reference schema required nullable regex min max different\_from

  Command reference Reference --help --json NO\_COLOR flags aliases exit code automation

  Configuration Reference ghostable.yaml activity mode auditEnvironments scan ignores deployTarget dotenv syntax

  Security Reference cryptography XChaCha20 Poly1305 HKDF user presence threat model

  Backups &amp; Offline Reference recovery offline restore clone key identity

  Agent integration Reference AGENTS.md capabilities allowlist coding agent

  Troubleshooting Reference no project found revoked identity stale policy user presence invalid CI token provider CLI git conflict diagnostics

  Ghostable Desktop overview Desktop

  Installation Desktop

  Projects and setup Desktop

  Interface tour Desktop

  Environments and variables Desktop

  Local environment files Desktop

  Validation and review Desktop

  Activity Desktop

  Access and automation Desktop

  Project settings Desktop

  Application settings Desktop

  Licensing and updates Desktop

  Security and storage Desktop

  Troubleshooting Desktop    No results found
