Skip to Main Content

Share your product feedback

Status Shipped
Categories Settings
Created by Mike Jacobson
Created on Jul 23, 2021

API Key restriction

I would like to have a way to manage my Aha Account in order to disable internal user's ability to generate an API Key?

  • ADMIN RESPONSE
    Sep 29, 2026

    Account administrators can now restrict who can generate new API keys. You can find the setting under Settings > Account > Security and single sign-on > Developer governance. By default, access remains enabled; administrators can turn off new key creation and, on Enterprise+ plans, make exceptions for specific users.

    The same area includes separate controls for authorizing applications and registering OAuth applications. Changing these settings does not automatically revoke existing keys or application access. Administrators should review existing access separately if they need to remove it.

  • Attach files
  • Alon Sabban
    Aug 31, 2026

    Just to elaborate what is needed and what is the issue

    1. Admins work hard to set restrictions in card creations , as there are other downstream implications such as integrations which require a very strict fields values

    2. So there are 2 asks here

      1. Enable/disable per user (allow for bulk / whole org / per workspace permission)

      2. A decent way to bind between "mandatory fields" and the API , and other admin restrictions (such as hieararchy validation), etc


  • Russell Glenn
    Jun 5, 2026

    yes please

  • +12