How do people manage ssh forced-commands in authorized public keys?

Hi,

What's the best practice recommended for managing ssh forced-commands
in authorized public keys?

I'm thinking of adding a set of command, environment, from options in
the authorized_key module, the key can be managed just by the key
text, but all other options can also be set/unset.

Michael, would you like to have that in core?

J