
Cx Platform Admin
- 1.3k installs
- 113 repo stars
- Updated August 4, 2026
- coralogix/cx-cli
cx-platform-admin is a Coralogix platform administration skill that audits permissions, manages API keys, controls user roles, and configures IP restrictions for developers who operate a Coralogix observability account.
About
cx-platform-admin is a skill from coralogix/cx-cli version 0.1.0 for managing access and authentication inside Coralogix observability accounts. It covers permission audits, user role reviews, API key creation and rotation, send-data key management, team group membership, scope administration, and IP allowlist restrictions. Developers reach for cx-platform-admin when answering who has access, reviewing expired keys, or tightening role-based access on a Coralogix tenant. Trigger phrases include audit permissions, rotate API keys, deactivate users, and check IP whitelist settings—operations tasks that sit alongside cx-cli observability workflows.
- Handles 20+ access-control queries including who-has-access, audit-permissions, list-API-keys, review-access-controls, r
- Read-only commands (list, get, search, system, sp-params, send-data-keys) run without confirmation.
- All write operations (create, update, delete, set-idp, set-active, set-status) require interactive user confirmation bef
- Never pass --yes without explicit approval; the skill always describes the exact change first.
- Manages user administration, team groups, role-based access, scopes, and IP allowlists in one CLI interface.
Cx Platform Admin by the numbers
- 1,270 all-time installs (skills.sh)
- +101 installs in the week ending Aug 5, 2026 (Skillselion tracking)
- Ranked #349 of 2,203 Security skills by installs in the Skillselion catalog
- Data as of Aug 5, 2026 (Skillselion catalog sync)
npx skills add https://github.com/coralogix/cx-cli --skill cx-platform-adminAdd your badge
Show developers this skill is listed on Skillselion. Paste this into your README.
| Installs | 1.3k |
|---|---|
| repo stars | ★ 113 |
| Last updated | August 4, 2026 |
| Repository | coralogix/cx-cli ↗ |
How do you audit Coralogix account permissions?
Audit permissions, manage API keys, control user roles, and configure IP restrictions inside a Coralogix observability account.
Who is it for?
Platform engineers and SREs administering Coralogix tenant access, API keys, and IP restrictions via cx-cli agent workflows.
Skip if: Application log querying or alert rule authoring without any Coralogix account administration needs.
When should I use this skill?
A developer asks who has Coralogix access, needs API key rotation, or must configure IP allowlists and user roles.
What you get
Permission audit reports, rotated or created API keys, updated user roles, and configured IP access restrictions.
- Permission audit results
- Rotated API keys
- IP restriction configs
By the numbers
- Skill metadata version 0.1.0
Files
Platform Admin Skill
Use this skill for managing access, authentication, and authorization in Coralogix. It covers API key management, role and scope definitions, user administration, team groups, and IP access restrictions.
---
Destructive Operation Safety
All write operations (create, update, delete, set-idp, set-active, set-status) require interactive confirmation. The CLI will prompt before executing. To skip the prompt in scripts, pass --yes.
IMPORTANT: NEVER pass `--yes` without explicit user approval. Before executing any write operation: 1. Describe the exact operation to the user (what will be created/modified/deleted) 2. Wait for the user to confirm 3. Only then execute with --yes
Read-only operations (list, get, search, system, sp-params, send-data-keys) do not require confirmation and can be run freely.
Read-Only Mode
Use --read-only (or CX_READ_ONLY=1) to block all write operations at the CLI level. This is useful for safe exploration - you can query any IAM resource without risk of accidental modifications.
Agent Mode
When running inside an AI agent (Claude Code, Cursor, Codex, etc.), cx automatically detects the agent environment and fails fast on write operations instead of hanging on a stdin prompt. The error message instructs you to get user confirmation first, then re-run with --yes.
---
CLI Commands
API Keys
| Command | Purpose |
|---|---|
cx iam api-keys list | List all API keys |
cx iam api-keys get <id> | Get a single API key |
cx iam api-keys create --from-file | Create an API key |
cx iam api-keys update --from-file <id> | Update an API key |
cx iam api-keys delete <id> | Delete an API key |
cx iam api-keys send-data-keys | List send-data API keys |
cx iam api-keys admin list | List all team members' keys |
cx iam api-keys admin delete --ids <id1> <id2> | Bulk delete keys |
cx iam api-keys admin set-status --ids <id1> --active true/false | Activate/deactivate keys |
Roles & Scopes
| Command | Purpose |
|---|---|
cx iam roles list | List custom roles |
cx iam roles get <id> | Get a role definition |
cx iam roles create --from-file | Create a custom role |
cx iam roles update --from-file <id> | Update a custom role |
cx iam roles delete <id> | Delete a custom role |
cx iam roles system | List system (built-in) roles |
cx iam scopes list | List all scopes |
cx iam scopes get <id> | Get a scope definition |
cx iam scopes create --from-file | Create a scope |
cx iam scopes update --from-file | Update a scope |
cx iam scopes delete <id> | Delete a scope |
Users & Groups
| Command | Purpose |
|---|---|
cx iam users search | Search users (optional --query, --status) |
cx iam users get <user-id> | Get a single user |
cx iam users create --from-file | Create user(s) |
cx iam users update --from-file | Update user(s) |
cx iam users set-status --user-ids <id> --status ACTIVE/INACTIVE | Activate/deactivate users |
cx iam groups list | List all team groups |
cx iam groups get <id> | Get a group by ID |
cx iam groups get-by-name <name> | Get a group by name |
cx iam groups users <group-id> | List users in a group |
cx iam groups create --from-file | Create a group |
cx iam groups update --from-file <id> | Update a group |
cx iam groups delete <id> | Delete a group |
IP Access
| Command | Purpose |
|---|---|
cx iam ip-access get | Get IP access settings |
cx iam ip-access create --from-file | Create IP access rules |
cx iam ip-access update --from-file | Update IP access rules |
cx iam ip-access delete | Delete IP access settings |
All commands support -o json for structured output and -p <profile> for profile selection.
---
Access Audit Workflow
Use this workflow to produce a comprehensive access report:
Step 1: List All Users
cx iam users search -o json
cx iam users search -o json | jq '[.[] | {id, name: .user_name, status, role_ids}]'Step 2: List Roles
cx iam roles list -o json
cx iam roles system -o jsonCross-reference user role IDs with role definitions to understand permissions.
Step 3: List Groups and Memberships
cx iam groups list -o json
cx iam groups list -o json | jq '[.[] | {id, name, member_count: (.members | length)}]'For each group, check members:
cx iam groups users <group-id> -o jsonStep 4: Inventory API Keys
cx iam api-keys list -o json
cx iam api-keys admin list -o json
cx iam api-keys send-data-keys -o jsonIdentify old or unused keys:
cx iam api-keys list -o json | jq '[.[] | {id, name, created_at, active}] | sort_by(.created_at)'Step 5: Check IP Restrictions
cx iam ip-access get -o jsonStep 6: Cross-Reference
Produce a summary: which users have admin roles, which API keys are old, which groups have broad access.
---
API Key Rotation
Safe key rotation workflow:
1. List current keys: cx iam api-keys list -o json 2. Identify keys to rotate: filter by age or name 3. Create replacement key: cx iam api-keys create --from-file new-key.json --yes (after user approval) 4. Deploy the new key to all systems using the old key 5. Verify the new key works in all integrations 6. Delete the old key: cx iam api-keys delete <old-key-id> --yes (after user approval)
WARNING: Never delete an API key before its replacement is deployed and verified. Deleting an active key immediately breaks all integrations using it.
---
Safety Callouts
Deleting API keys breaks any integration using that key immediately. Always create a replacement first.
Deactivating users (cx iam users set-status --status INACTIVE) takes effect immediately. The user loses access with no grace period.Deleting IP access rules (cx iam ip-access delete) removes all IP restrictions immediately, potentially exposing the account.---
Key Principles
- Audit before modifying - run the full access audit workflow before making changes
- Never delete keys without replacement - create new key → deploy → verify → delete old
- Use `-o json` for structured reports - enables jq filtering for precise access analysis
- Multi-profile for cross-environment audits - use
-p <profile>or--all-profilesto audit staging + production - Template from existing -
cx iam roles get <id> -o json > role.jsonbefore creating new roles
---
Related Skills
- `cx-cost-optimization` - review what API keys are used for and whether they're still needed
Related skills
FAQ
What Coralogix admin tasks does cx-platform-admin cover?
cx-platform-admin covers permission audits, user role management, API key and send-data key lifecycle, team group membership, scope administration, and IP allowlist configuration for Coralogix accounts.
When should developers invoke cx-platform-admin?
cx-platform-admin fits questions like who has access, rotate API keys, or check IP whitelist—any Coralogix tenant access-control task alongside cx-cli observability tooling at version 0.1.0.