API referenceIdentity and accessAPI clients
Rotate an API client's secret
Requires the api_clients:update permission.
The previous secret stops working immediately; tokens already issued run to their expiry.
AuthorizationBearer <token>
An access token from this zone's POST /oauth/token, or a session token from POST /api/v1/auth/login. Send it as Authorization: Bearer <token>.
In: header
Path Parameters
id*string
Response Body
application/json
application/json
application/json
application/json
application/json
application/json
curl -X POST "https://example.com/api/v1/api-clients/string/rotate"{ "client_id": "string", "client_secret": "string", "rotated_at": "2019-08-24T14:15:22Z", "secret_hint": "string"}