modal workspace
Interact with the current Modal Workspace.
A Workspace is the top-level account that owns your Modal resources. Use these commands to manage workspace-level settings such as proxy tokens.
Usage:
modal workspace [OPTIONS] COMMAND [ARGS]...Options:
--help: Show this message and exit.
Commands:
members: View the members of the current Workspace.proxy-tokens: Manage the proxy tokens of the current Workspace.settings: Manage workspace settings.
modal workspace members
View the members of the current Workspace.
Usage:
modal workspace members [OPTIONS] COMMAND [ARGS]...Options:
--help: Show this message and exit.
Commands:
list: List the members of the current Workspace.
modal workspace members list
List the members of the current Workspace.
Usage:
modal workspace members list [OPTIONS]Options:
--json--help: Show this message and exit.
modal workspace proxy-tokens
Manage the proxy tokens of the current Workspace.
Proxy tokens provide authentication to Modal Endpoints, Servers, and Web Functions.
Proxy tokens and secrets have wk- and ws- prefixes, respectively. They cannot be
interchanged with API tokens (which use ak- and as- prefixes).
Proxy tokens are passed as request headers, either as a key / secret pair:
Modal-Key: wk-123
Modal-Secret: ws-456Or as a single Bearer token:
Authorization: Bearer wk-123.ws-456See https://modal.com/docs/guide/webhook-proxy-auth for more information.
On workspaces with RBAC enabled, tokens are scoped to specific environments;
use the allow and revoke commands to manage environment associations.
Usage:
modal workspace proxy-tokens [OPTIONS] COMMAND [ARGS]...Options:
--help: Show this message and exit.
Commands:
allow: Allow a proxy token to authenticate to an environment.create: Create a proxy token in the current Workspace.delete: Delete a proxy token from the current Workspace.list: List the proxy tokens of the current Workspace.revoke: Revoke a proxy token's access to an environment.update: Update a proxy token in the current Workspace.
modal workspace proxy-tokens allow
Allow a proxy token to authenticate to an environment.
Example:
modal workspace proxy-tokens allow wk-123 prodUsage:
modal workspace proxy-tokens allow [OPTIONS] TOKEN_ID ENVIRONMENT_NAMEOptions:
--help: Show this message and exit.
modal workspace proxy-tokens create
Create a proxy token in the current Workspace.
The new token's ID and secret will be printed to stdout. The secret is only shown at creation time and cannot be retrieved later.
Examples:
modal workspace proxy-tokens create --name production-webhooks
modal workspace proxy-tokens create --jsonUsage:
modal workspace proxy-tokens create [OPTIONS]Options:
--name TEXT: Name to help identify the token.--json--help: Show this message and exit.
modal workspace proxy-tokens delete
Delete a proxy token from the current Workspace.
Example:
modal workspace proxy-tokens delete wk-123Usage:
modal workspace proxy-tokens delete [OPTIONS] TOKEN_IDOptions:
-y, --yes: Run without pausing for confirmation.--help: Show this message and exit.
modal workspace proxy-tokens list
List the proxy tokens of the current Workspace.
Examples:
modal workspace proxy-tokens list
modal workspace proxy-tokens list --environment prod
modal workspace proxy-tokens list --jsonUsage:
modal workspace proxy-tokens list [OPTIONS]Options:
-e, --environment TEXT: Only list tokens associated with this environment. Lists all tokens when omitted.--json--help: Show this message and exit.
modal workspace proxy-tokens revoke
Revoke a proxy token's access to an environment.
Example:
modal workspace proxy-tokens revoke wk-123 prodUsage:
modal workspace proxy-tokens revoke [OPTIONS] TOKEN_ID ENVIRONMENT_NAMEOptions:
--help: Show this message and exit.
modal workspace proxy-tokens update
Update a proxy token in the current Workspace.
The following settings can be updated:
name: A name to help identify the token. Pass an empty value to remove it.
Example:
modal workspace proxy-tokens update wk-123 name production-webhooksUsage:
modal workspace proxy-tokens update [OPTIONS] TOKEN_ID SETTING VALUEOptions:
--help: Show this message and exit.
modal workspace settings
Manage workspace settings. Must be workspace manager or owner.
Usage:
modal workspace settings [OPTIONS] COMMAND [ARGS]...Options:
--help: Show this message and exit.
Commands:
list: View the current settings for the workspace.set: Update a workspace setting.
modal workspace settings list
View the current settings for the workspace.
Usage:
modal workspace settings list [OPTIONS]Options:
--json--help: Show this message and exit.
modal workspace settings set
Update a workspace setting. Must be workspace manager or owner.
The following settings can be updated:
image-builder-version: The image builder version determines the software included in our base images.default-environment: The default environment to use when the environment is omitted from SDK or CLI methods.
Usage:
modal workspace settings set image-builder-version 2025.06modal workspace settings set default-environment main
Usage:
modal workspace settings set [OPTIONS] SETTING VALUEOptions:
--help: Show this message and exit.