Revoking API Keys
Revoke unused, lost, or compromised private keys.
Overview
Revoke an API key immediately if it becomes inactive, lost, or compromised. A revoked API key denies access to the App Store Connect API on your organization’s behalf.
Revoking Team Keys
To revoke a team API key, log in to App Store Connect with an Admin account.
Select Users and Access, then select the Keys tab.
Click Edit next to the list of Active keys.
Select the API keys to revoke, and click Revoke Key.
Click the Revoke button to confirm.
Revoking Individual Keys
There are two ways to revoke an individual API key, depending on your role. Begin both methods by logging in to App Store Connect.
To revoke keys for another user, as an Admin:
Select Users and Access, then select the Keys tab.
Click Individual Keys.
Click Edit next to the list of Active keys.
Select the API keys to revoke, and click Revoke Key.
Click the Revoke button to confirm.
To revoke your own key:
Go to your user profile.
Scroll down to Individual API Key.
Click Revoke.
Click the Revoke button to confirm.