Your API token is a secret phrase, similar to a password. This token should be changed periodically to maintain good hygiene, or immediately if you suspect that it has been compromised.
Resetting your API token
You can reset your API token. This will immediately revoke any existing tokens you've used, so use with care.
To reset your API token:
- Click your profile > Account.
- Scroll to the API Authentication Token field in the Security Settings section.
- Click Reset Authentication Token.
If your profile is linked to multiple Red Canary subdomains, your API token will work with all of those subdomains. Resetting your API token will revoke that token across all the subdomains to which your account is linked.