API v1 · 4xx
key_expired
| HTTP | When |
|---|---|
| 401 | The API key passed the expiresAt configured at creation time. |
Expired keys remain in the audit trail (so you can investigate past usage) but stop authenticating new requests immediately at 00:00 UTC on their expiry date.
To recover:
- From Settings → Developer → API keys, either edit the key to remove or extend the expiry, OR mint a replacement.
- Update your integration with the new secret.
- Optional: schedule the next expiry on the new key — best practice is to rotate at most every 90 days.