A desktop workbench for API keys, sessions, and proxy routing

All API Deck

Bring scattered relay sites, API keys, models, Codex / Claude / OpenCode / OpenClaw sessions, and local proxy routing into one console. The new version adds key vault sync, session views, MCP and Skill management, prompt-injection guard, mini floating status, and connection records.

Key vault Sync, groups, quick live checks
Sessions Codex / MCP / Skill visibility
Guard Prompt-injection defense and proxy audit
All API Deck key vault screenshot
providersqueued
guardenabled
sessionstracked
All API Deck sessions screenshot
01

Import and sync

Import sites and keys from backups, extensions, or clipboard, then keep sync history and health state in the key vault.

02

Check and group

Batch-check availability by model, group, and status, then assign stable keys to target clients.

03

Proxy routing

Maintain provider queues, protocol fallback, route traces, and recent connection records.

04

Session guard

Inspect sessions, MCP, and Skills while using the guard to reduce toolchain injection risk.

New capabilities

From key management to a local AI toolchain console.

All API Deck now handles more than API keys: sessions, provider routing, client takeover, toolchain configuration, and security guardrails live in the same desktop workflow.

Key vault

Synced key vault

See local records, healthy counts, last sync time, batch sync results, groups, and site-level quick checks.

Sessions

Sessions, MCP, and Skill panel

Inspect project sessions, message history, MCP services, and Skill state from the desktop app.

Proxy pool

Proxy provider routing

Show queued providers, hits, exit protocol, HTTP status, latency, and route traces for real upstream behavior.

Anti-poison

Prompt-injection guard

Configure dynamic toolchain watermarking, randomized prompts, return-flow validation stats, and strict mode.

Mini floating

Mini floating status

View provider, hit state, latency, model, base URL, and public/private status over your coding window.

Client takeover

Client takeover

Generate local proxy config for Claude, Codex, OpenCode, and OpenClaw while keeping reviewable connection records.

Interface preview

The new interface is organized around the key vault, sessions, proxy, and guard.

The current interface brings the key vault, sessions, MCP, Skill, proxy connections, and prompt-injection guard into the main maintenance and client-takeover path.

Sidebar / miniBar / floating

Keep watching routing state outside the main window.

The sidebar workflow is still core: use the sidebar, miniBar, or floating window to inspect record state, refresh, run quick checks, switch models, and watch provider queues and live scheduling hits.

  • Inspect the current provider queue, hit item, and scheduling state.
  • Refresh one record, run quick checks, and switch models.
  • Windows has the most complete sidebar and floating-window experience; other platforms can use miniBar or standalone windows for similar workflows.

Advanced proxy

Keep upstream differences inside the proxy layer.

The new proxy view puts provider cards, request logs, and connection records together: entry, exit, model, route trace, elapsed time, latency, and HTTP result stay visible. To the client, it still behaves like a stable local endpoint.

Read proxy docs
All API Deck advanced proxy flow diagram

Upgrade API key management into a local AI toolchain console.

Built for users who frequently import, test, group, take over clients, inspect proxy routing, and need visibility into prompt-injection risk.

Open Releases