Using the dashboardServer Integration And Keys
Security Checklist
Server Integration And Keys: Security Checklist
- Public API Key is only used for the client SDK of the corresponding endpoints.
- Region server keys are only saved in the server key management system or environment variables.
- Different Regions use their own server keys.
- All apps and services affected by the key in the same region are listed.
- Test, production and disaster recovery update plans prepared before rotation.
- Old key replacement completed within the 48 hour grace period.
- Call logs and abnormal IPs have been checked after rotation.
- The access personnel and deployment scope of the server key have been restricted.
- The suspected leak was immediately rotated and support was contacted.