Security
Client Access Keys
Use scoped client credentials only for supported clients that cannot use the intended OAuth path.
Client Access Keys are account-scoped credentials for supported clients that need the key-based connection path.
The account UI creates them with fixed least-privilege scopes appropriate to client access. Approval authority is not granted by default.
The full secret is shown only when the key is created. Later views expose only safe metadata.
Revoke a key when it is no longer needed or if you believe it may have been exposed.
Prefer the normal OAuth flow whenever the client supports it.
