如何使用 Python 从 TOML 文件中读取 Google API 凭据?

How do I read Google API credentials from a TOML file with Python?

我正在尝试使用 Google 工作表 Api 提取一些数据。这是代码的开头:


# Import the python libraries.
import gspread
from oauth2client.service_account import ServiceAccountCredentials
from pathlib import Path
import os
import json


# Get JSON_DATA from the build environment.
jsondict = json.loads(os.environ['JSON_DATA'])

# Use creds to create a client to interact with the Google Drive API
scope = ['https://spreadsheets.google.com/feeds','https://www.googleapis.com/auth/drive']
creds = ServiceAccountCredentials.from_json_keyfile_dict(jsondict, scope)
client = gspread.authorize(creds)

# Open the Google Sheet by ID.
sheet1 = client.open_by_key("somekey").sheet1

# Extract all of the records for each row.
sheetdata1 = sheet1.get_all_records()

在我所指的教程中,作者是这样描述 JSON_DATA 对象的:

Note: the ‘JSON_DATA’ variable in the python code is a Netlify build environment variable that I set with JSON format Google API credential information to keep my secret stuff out of the script.

我的 netlify.toml,其中包含构建环境变量:

[build]
command = "hugo"
publish = "public"
[build.environment]
HUGO_VERSION = "0.80.0"

[context]
[context.branch-deploy]
command = "hugo -F -b $DEPLOY_PRIME_URL"
[context.deploy-preview]
command = "hugo -F -b $DEPLOY_PRIME_URL"
[context.production]
[context.production.environment]
HUGO_ENV = "production"

我知道要包含从 Google 下载的凭据(在 JSON 文件中),我必须将其放入 netlify.toml:

[installed]
client_id = "something.apps.googleusercontent.com"
project_id = "someiD"
auth_uri = "https://accounts.google.com/o/oauth2/auth"
token_uri = "whatevergoeshere"
client_secret = "somesecret"
redirect_uris = [ "something", "http://localhost" ]

但是我如何读取 Python 代码的这些凭据?该行似乎表明它只需要 JSON 文件。

JSON_DATA 对象仅包含比从 Google 收到的凭据对象更多的信息。但是调用的方法需要 Google 的凭据,将简单地忽略它们不需要的附加参数。因此,只要您保持凭据对象的名称相同,ServiceAccountCredentials.from_json_keyfile_dict() 等方法就会简单地忽略不需要的那些。

好的,所以您需要将 json 密钥文件的内容复制粘贴到实际的环境变量中:

JSON_DATA = '{"key":"secret"}'

不是最直接的方法,但它有效。

为了保持理智,我会使用网络界面来处理这些变量。

https://docs.netlify.com/configure-builds/environment-variables/

第一行将环境变量中的任何内容解析为字典。在这种情况下不需要解析 toml 本身,因为它已经为您解析了。