Production readiness checklist
Security and operational checks to run through before you go live.
Before switching a real integration on, confirm:
Security
- Your production API key is stored as an environment variable or secret, never hardcoded — see creating your first API key
- You have a plan for rotating and revoking credentials if one is ever exposed
- You've read PTERI's threat model and shared responsibility so you know what's on you vs. the platform
Operational
- Your code checks the
successfulfield on every response, not just the HTTP status — see understanding the API response envelope - You've tested authentication end-to-end, including the failure paths — see test authentication before production
- You know your plan's rate limit and have basic retry/backoff handling — see rate limits and safe retry behavior
- You've bookmarked the status page and know your support severity levels before you need them