---
title: npm-token
section: 1
npm token list
npm token revoke <id|token>
npm token create [--read-only] [--cidr=list]
Note: This command is unaware of workspaces.
This lets you list, create and revoke authentication tokens.
npm token list:--json or tab-separated values with --parseable.Read only token npm_1f… with id 7f3134 created 2017-10-21
Publish token npm_af… with id c03241 created 2017-10-02
with IP Whitelist: 192.168.0.1/24
Publish token npm_… with id e0cf92 created 2017-10-02
npm token create [--read-only] [--cidr=<cidr-ranges>]:--read-only, or acceptCurrently, the cli can not generate automation tokens. Please refer to
the docs
website
for more information on generating automation tokens.
Created publish token a73c9572-f1b9-8983-983d-ba3ac3cc913d
npm token revoke <token|id>:npm token create, and those.npmrc), and ids as seen in the parseable or jsonnpm token list. This will NOT accept the truncated tokennpm token list output.read-onlyThis is used to mark a token as unable to publish when configuring limited
access tokens with the npm token create command.
cidrThis is a list of CIDR address to be used when configuring limited access
tokens with the npm token create command.
registryThe base URL of the npm registry.
otpThis is a one-time password from a two-factor authenticator. It's needed
when publishing or changing package permissions with npm access.
If not set, and a registry response fails with a challenge for a one-time
password, npm will prompt on the command line for one.