The moment customers want to connect your product to theirs, you need key management. This issues, scopes, and revokes keys, and shows usage per key.
What's Included
- Keys issued per account with a name and purpose on each.
- Usage counted per key so a runaway integration is visible.
- Self-service rotation and revocation without a support ticket.
- An assistant that flags unusual usage on a key.
How To Use
- Let customers name their keys. An unlabelled key is never revoked.
- Show the key in full once, then only the last few characters.
- Count usage per key. It is how you find a broken integration.
- Make rotation self-service or it will simply never happen.
Count it against limits with usage metering, and document it with developer documentation.
