# Login and tokens (/docs/login)



```sh
vanish login
```

Vanish opens GitHub sign-in in your browser and saves this machine's token with owner-only file permissions.

The [account page](https://api.vanishcompute.com/account) shows your remaining credits and lets you create and revoke tokens. Treat a token like a password. On a headless machine or in CI, supply a token from your secret manager as `VANISH_TOKEN`, or save one explicitly:

```sh
vanish login --token "$VANISH_TOKEN"
```

An exported `VANISH_TOKEN` takes precedence over the saved credential. Keep it out of your repository and out of shared shell history. `vanish logout` revokes this machine's token and deletes the saved credential.

If sign-in fails, check which GitHub account the browser is signed in to. If the sign-in link has expired, run `vanish login` again.
