Skip to content

fix: delete every cached item of a profile, including zsh-op leftovers - #31

Merged
iamralch merged 1 commit into
mainfrom
fix/clear-legacy-items
Oct 6, 2026
Merged

iamralch merged 1 commit into
mainfrom
fix/clear-legacy-items

Conversation

@iamralch

@iamralch iamralch commented Oct 6, 2026

Copy link
Copy Markdown
Contributor

keysafe profile clear only deleted secrets named in the config or the loaded metadata, so items zsh-op cached under op-secrets-<profile> for secrets no longer configured stayed in the keychain.

  • SecretStore::accounts lists the item names under a service by searching the keychain (attributes only, never prompts).
  • profile clear deletes every item under both keysafe.<profile> and op-secrets-<profile>.
  • doctor warns: ! Keychain: 8 items left from zsh-op under op-secrets-personal (remove them with \keysafe profile clear personal`)`.
  • README: the zsh-op migration notes mention the leftovers.

`keysafe profile clear` deleted only the secrets named in the config or
the loaded metadata, so items zsh-op cached under op-secrets-<profile>
for secrets no longer configured stayed in the keychain forever. Clear
now also searches the keychain for every item under keysafe.<profile>
and op-secrets-<profile> (attributes only, no prompts) and deletes them.

`keysafe doctor` warns when zsh-op items remain for a configured
profile and says how to remove them.
@iamralch iamralch self-assigned this Oct 6, 2026
@iamralch
iamralch merged commit e02b0a3 into main Oct 6, 2026
8 checks passed
@iamralch
iamralch deleted the fix/clear-legacy-items branch October 6, 2026 07:46
@ralch ralch Bot mentioned this pull request Oct 6, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant