Skip to main content
Run voyant --help for inline usage and voyant <command> --help for command-specific flags.

Global flags

Emit machine-readable output. Failures use a stable { "error": { "code", "message" } } envelope on stderr.
Target an organization for one command. You can also set VOYANT_CLOUD_ORG.
Override the resolved token and API base URL for one command.
Approve a destructive action non-interactively. Deletes require this flag when no TTY is available.

Authentication and organizations

Authorize through the browser device flow or store an existing token for CI and headless use.
Remove one organization’s stored credential or all credentials for the API URL.
Show the API URL, credential source, and active organization.
List available organizations, select one, or print the active organization.

Apps and deployments

Manage apps in the active organization. Deletion requires --yes.
Manage an app environment’s variables. Use --secret with set for masked values.
Trigger a deployment for an app environment.
Inspect deployments, stream build logs, cancel a run, or roll back to an earlier release.
Read or stream runtime logs. Filter by level, search text, environment, or time window.

Databases and storage

Manage databases in the active organization.
List database branches or obtain a pooled or direct connection string.
Manage object-storage buckets. Deletion requires --yes.

Vault

List vaults and secret counts without returning secret values.
List secret keys and versions in a vault.
Create or update a secret. When value is omitted, the CLI reads it from stdin.
Delete a secret.
The CLI does not decrypt secrets. Reveal a value through the dashboard or use a server-side app token with the required vault scope.