Sazabi
Sandbox CLIs

DigitalOcean

Give the Sazabi agent the DigitalOcean CLI (doctl) in its sandbox to manage DigitalOcean resources with a personal access token.

About

This CLI connection makes the DigitalOcean CLI (doctl) available in the Sazabi agent's sandbox. The tool is baked into the sandbox image; connecting it authenticates the already-installed CLI.

Prerequisites

  • A Sazabi project.
  • A DigitalOcean personal access token (DIGITALOCEAN_ACCESS_TOKEN), generated from the DigitalOcean control panel under API > Tokens.

Set up in the dashboard

Configure the sandbox in the dashboard under Settings > Sandbox CLIs.

Find DigitalOcean in the catalog

In Settings > Sandbox CLIs, find DigitalOcean under Browse sandbox CLIs and choose to connect it.

Provide credentials

Enter the required value: DIGITALOCEAN_ACCESS_TOKEN — your DigitalOcean personal access token. Save to store it securely; Sazabi injects it into the sandbox when the agent runs.

Set up with the CLI

You can also configure the DigitalOcean CLI connection with the Sazabi CLI (installed and authenticated — see CLI reference).

sazabi sandbox-clis set --type digitalocean --env DIGITALOCEAN_ACCESS_TOKEN=<your-do-token>

To validate the credentials without saving, run the same command with test in place of set (the test command also requires the --env flags).

Verify

Ask the agent, in a thread, to run the doctl CLI (a read-only or status command) and confirm it returns real output from your account. If the command is not found, the CLI connection may not be enabled; if it runs unauthenticated, recheck the credentials.

Troubleshooting

Command not found — Confirm the DigitalOcean CLI connection is enabled for the project under Settings > Sandbox CLIs.

Authentication fails — Recheck the credential values; a rotated or revoked token must be re-entered under Settings > Sandbox CLIs or with sazabi sandbox-clis set --type digitalocean.

Further reading