Recommended security posture
- keep keys server-side
- use separate keys per service
- use the narrowest scopes possible
- prefer selected collection scope over all collections when appropriate
- rotate keys periodically and after privilege changes
Lifecycle operations
The product supports:- create
- list
- rotate
- update scopes
- revoke
- delete with retention behavior for revoked keys