Skip to content

Manage access keys

View as Markdown

An access key is a long-lived credential for a service or command-line tool that signs in to a specific application without a browser. It can represent your account or belong to an agent or automation you created.

If a person launches the tool and can approve sign-in in a browser, Device Authorization is usually a better fit.

Confirm that:

  • you recognize the target application and it accepts access keys for the principal you selected;
  • the agent or automation is active, if the key will belong to one; and
  • you have a password manager, secret store, or protected runtime environment ready for the secret.

In with.sudomimus.com:

  1. Open Programmatic access → Access keys.
  2. Select Create access key and enter the application anchor.
  3. Choose your account, an agent, or an automation as the principal.
  4. Review the profile information requested by the application and confirm your choices.
  5. Create the key, then copy and store the secret immediately.

The secret is shown once. The portal will continue to show the key name, principal, and usage details, but it cannot reveal the secret later.

If the network drops during creation, keep the form unchanged and retry so the portal can recover the result of the same operation.

An application may request your name, email, or avatar. That information comes from the owning account even when an agent or automation signs in. Share only what the task needs.

If required profile data is missing, update your profile before trying again. A key cannot be created if you decline information the application requires.

For a routine rotation, create a replacement and update the service first. Revoke the old key after the service can sign in successfully with the new one.

Revoke a key immediately if it may have leaked. Revocation cannot be undone, and any service using that key will lose access.