Create multiple API keys with different scopes and permissions. Rotate keys without downtime. Scope keys to specific vaults or operations for principle of least privilege.

How it works

Generate API keys from the settings page. Each key can be scoped to specific vaults, operations (read-only, write, admin), and rate limits. Keys can be rotated -- create a new key, update your integrations, then revoke the old one. Usage analytics show which keys are being used and how often. Keys can be temporarily disabled without deletion.

API key management with scoping and rotation controls

Why it matters

Security best practices require different keys for different integrations with minimal permissions. A key for your blog integration should not have access to your private vault. Fine-grained scoping limits the blast radius if a key is compromised. Rotation without downtime means you can maintain good security hygiene without disrupting workflows.

API key scoping showing vault and operation permissions

Try API Keys today

Free during preview. No credit card required.