Skip to main content
Workspace owners and administrators rotate keys from Workspace Settings → API access.
1

Create the replacement

Select Rotate on the active key. Bukki displays the replacement secret once.
2

Update the integration

Store the replacement in the integration’s secret manager and deploy the change.
3

Verify requests

Confirm that new requests authenticate with the replacement key.
4

Revoke the old key

Revoke the old credential as soon as the deployment is confirmed. Otherwise, it expires automatically after the 24-hour overlap.
For a suspected compromise, skip the overlap and revoke the exposed key immediately. Revocation takes effect on the next request.