Of course the question comes because we always lack tokens and have to dance around many providers.
Of course the question comes because we always lack tokens and have to dance around many providers.
For Claude specifically, there are two places where it tracks state:
~/.claude.json -- contains a bunch of identity stuff and something about oauth
~/claude/ -- also contains something about oauth, plus conversation history, etc
If they're not _both_ present and well-formed, then it forces you back through the auth flow. On an ordinary desktop setup, that's transparent. But if you want to sandbox each thread, then sharing just the token requires a level of involvement that feels icky, even if the purpose is TOS-compliant.
I have my own Docker image for similar purpose, which is for multiple agent providers. Works great so far.