litellm/ui/litellm-dashboard/e2e_tests/tests/modelsPage
ryan-crabbe-berri 577dd3b707
fix(ui): stop credential edit from persisting the masked api key (#33797)
Editing an existing LLM credential and changing only the api_base also
overwrote the stored api_key with its masked display value (e.g. sk****IA).
The edit form pre-fills fields from the credential the backend returns, whose
secrets come back masked, and the update handler sent every field straight
back; the endpoint then encrypted and stored the asterisks over the real key.

Run credential_values through stripMaskedSecrets before the PATCH so masked
placeholders are never sent, mirroring the guard the model edit form already
uses. The isMaskedSecret / stripMaskedSecrets helpers move out of
model_info_view into a shared utils module so both call sites share one
implementation.

Add a Playwright e2e that seeds a credential, edits only the api base in the
LLM Credentials tab, and asserts the outgoing PATCH no longer carries the
masked api_key while the new base persists.
2026-07-17 18:25:24 -07:00
..
addModel.spec.ts style(ui): run prettier --write across the dashboard (#29622) 2026-06-04 11:37:54 -07:00
clearCustomPricing.spec.ts style(ui): run prettier --write across the dashboard (#29622) 2026-06-04 11:37:54 -07:00
credentials.spec.ts fix(ui): stop credential edit from persisting the masked api key (#33797) 2026-07-17 18:25:24 -07:00