Skip to content

MultiKey CLI v1.1.0

Choose a tag to compare

@alator-ta alator-ta released this 02 Jul 14:34
· 2 commits to main since this release

Security-hardening release plus two new features.

Fixed

  • Correct identity isolation — generated SSH host blocks now include IdentitiesOnly yes, so Git authenticates as exactly the profile's key instead of whichever key your SSH agent offers first. This is the core promise of the tool: without it, having a second key loaded could push as the wrong account. The multikey diagnose connection test is isolated the same way.

Added

  • multikey apply --dry-run — preview every remote-URL, git-config, and mapping change before anything is modified.
  • Passphrase-protected keys — optionally encrypt generated SSH keys with a passphrase. On macOS the key is added to the Keychain and agent so you only enter the passphrase once.

Hardened

  • ~/.ssh/config is now backed up (.bak) and written atomically before the Include line is added, and the include is prepended so a pre-existing Host block can no longer shadow the multikey aliases (SSH is first-match-wins).
  • ~/.ssh/multikey.conf is written with 0600 permissions.
  • Key generation now delegates to ssh-keygen, persisting the .pub file alongside the private key.

Full changelog: v1.0.0...v1.1.0