I would like to have a way to manage my Aha Account in order to disable internal user's ability to generate an API Key?
Account administrators can now restrict who can generate new API keys. You can find the setting under Settings > Account > Security and single sign-on > Developer governance. By default, access remains enabled; administrators can turn off new key creation and, on Enterprise+ plans, make exceptions for specific users.
The same area includes separate controls for authorizing applications and registering OAuth applications. Changing these settings does not automatically revoke existing keys or application access. Administrators should review existing access separately if they need to remove it.
Just to elaborate what is needed and what is the issue
Admins work hard to set restrictions in card creations , as there are other downstream implications such as integrations which require a very strict fields values
So there are 2 asks here
Enable/disable per user (allow for bulk / whole org / per workspace permission)
A decent way to bind between "mandatory fields" and the API , and other admin restrictions (such as hieararchy validation), etc
yes please