Use‑case motivation – Commenters see value in caching CLI output to avoid repeated network calls or secret prompts, especially for tokens, API keys, or frequently‑used data.
“From the example in the Readme, I guess retrieving a token from an API, using a secret fetched from a secure vault that requests a password or TouchID validation.” – frizlab
“I just want to avoid leaving my credentials and secrets on the filesystem.” – alex0ptr
“I store the labels with a TTL of a week so that I don’t have to fetch them every time.” – adregan
Security considerations – Many discuss the risks of storing secrets and weigh daemon‑based HMAC protection against file‑based caches.
“I don’t want to store them in a file since I don’t trust my agents with that data. Instead, the daemon secures the values using/under an HMAC key, making them virtually impossible to guess.” – alex0ptr
“I wouldn’t use it for sensitive items like passwords or tokens…” – adregan
“If you have allowed an agent to access any kind of credential, you should assume it is no longer private.” – devmor
“Fnox … supports fetching secrets and caching the results either in local age encrypted files or in a background daemon (in memory only).” – stryan
Alternatives and desired features – Users compare the tool to existing solutions (memo, bkt, up) and ask for improvements like transparent usage, better integration, or TTL handling.
“I have my own called memo … It was discussed in … and others chimed in with their own (like bkt(1) and up(1)).” – aktau
“I wish this worked without prefixing the commands with ‘once’…” – xuhu
“Been using this, for similar cli output catching… Wondering what you think about the two, and what are the good reasons to use one vs the other?” – hecomo