Security & Access
| Reference | What it covers |
|---|---|
| Secrets | Secret record fields, value disclosure rules, storage backends, and create/update/delete lifecycle. |
| API keys | Managed API key record fields, status values, expiry and rotation behaviour, and use as a source-auth credential. |
| Source authentication | The four ways a surface can authenticate its callers — JWT bearer, API key, API Key Provider, and mTLS — and where each method’s values come from. |
| RBAC | The administrator/poweruser/user role ladder and the full default permission map. |
Was this page helpful?
Glad to hear it! Please tell us how we can improve more.
Sorry to hear that. Please tell us how we can improve.
Thank you for sharing your feedback so we can improve your experience.