Environments and configuration
The CLI talks to one of two environments. Every command, including the auth and job commands, uses the same base URL for the selected environment.
Environments
The CLI supports two environments:
The environment is resolved in this order: the --env flag, then the DEEL_ENV variable, then prod. Tokens are stored per environment, so a token stored with deel auth login --env demo is used only for demo commands.
The two environments hold separate data and separate credentials. A production token does not authenticate against demo, and nothing you create in demo appears in production. Demo is not a copy of your production data either, so an identifier taken from production, such as a contract id, does not resolve there.
Commands default to production. Set DEEL_ENV=demo while developing scripts, and pass --env prod explicitly when a script is meant to run against production.
The CLI requires HTTPS for the API base URL and refuses to send credentials to any non-HTTPS address.
Environment variables
Configure the CLI through these environment variables:
Flags override environment variables when both are present. Two exceptions apply in one direction only: --log cannot re-enable logging once DEEL_LOG=off is set, and no flag can disable body logging once DEEL_LOG_BODIES=1 is set.
Corporate networks and private CAs
The CLI trusts the operating system certificate store in addition to the bundled Mozilla root store. A TLS-inspection proxy or an internal certificate authority works without configuration as long as its root certificate is installed on the machine.
If a root is not in the OS store, add it explicitly. Certificate verification is never disabled.
Set DEEL_CERT_STORE=bundled to ignore the OS store and trust only the bundled roots plus any explicitly added certificates.
When a TLS error occurs, the CLI exits with network.tls and a hint describing these options.
Request timeouts
Each Hypertext Transfer Protocol (HTTP) request times out after 30 seconds and exits with network.timeout. Retries for idempotent requests are described in Idempotency and retries.