Hugging Face token¶
You do not need a token for anything in the default catalog — every mlx-community repo is public.
A token is only used for gated repositories (Llama, Gemma originals, …) that you have been granted
access to.
Add one¶
- Create a read token at huggingface.co/settings/tokens.
- Settings → Hugging Face token → paste → Save.
Where it goes¶
- The Keychain of the device,
kSecAttrAccessibleWhenUnlockedThisDeviceOnly. It is not synced to iCloud Keychain and not included in backups. - It is sent as
Authorization: Bearer …only tohttps://huggingface.cowhen a download is started, and only for the repo you tapped. - It is never logged, never shown again in full (the field shows
hf_…1234), never sent anywhere else.
Remove clears it from the Keychain immediately. The app keeps working with public models.
In the SDK¶
Keychain in Loopl is the tiny wrapper the app uses to store it (kSecAttrAccessibleWhenUnlockedThisDeviceOnly).