Revoke an API credential

When and how to permanently disable a key from your Developer Dashboard.

Updated September 14, 2026 · 1 min read

Revoke a key from your Developer Dashboard when:

  • You're completing a rotation and have confirmed the replacement works
  • The key may have been exposed — committed to source control, logged, or shared
  • An integration that used it is being decommissioned

Revocation takes effect immediately — any request still using that key will start failing authentication (see common API errors). Make sure nothing production-critical still depends on it before you revoke.

Still stuck?

Ask Kai about this article, or open a ticket with our team.

Submit a ticket