#Nukesforbreakfast

1 messages · Page 1 of 1 (latest)

olive forgeBOT
pale horizon
#

Hi, can you add more details? What do you mean by 'it is possible to roll webhoook endpoint secrets as well as API keys'?

lime cave
#

in the dashboard, I can expire a webhook secret

#

similarly I am able to roll an API key

pale horizon
#

Ah I see, you're trying to see confirm if you can do these via the API?

lime cave
#

correct, I haven't found an API to do it. The use case is only allowing access to these from AWS Secrets Manager, and enabling AWS Secrets Manager to periodically rotate/roll the keys automatically.

#

right now it's entirely manual

pale horizon
#

Yeah, what you're looking for is not possible via the API I'm afraid.

lime cave
#

ok

#

that's unfortunate

#

is there any chance of that changing in the future?

pale horizon
#

I do not believe so

lime cave
#

something something PCI something something compliance?

pale horizon
#

That I am unsure as well.

lime cave
#

alright, well I guess it would be nice to have it in as a feature request to be able to programmatically handle secrets.