API Key Security Concerns
The cluster focuses on user concerns about the security risks of entering personal API keys into third-party websites or apps, including fears of key theft or logging, and discussions of alternatives like OAuth or bring-your-own-key (BYO) options.
Activity Over Time
Top Contributors
Keywords
Sample Comments
This sounds like a cool idea but there's no way I'm putting my API key into this site
Even if they auth every user, what's stopping me from making my own API key and feeding it to my favorite app?
Hmm, so this is expecting me to upload a personal API Key...
What security features are in place to ensure nothing is capturing or logging user API keys?
yeah, and you cant have something like api keys
Isn't including your own client and secret API keys not a good idea?
Is it normal to have to paste a private API key into a random website to use it?
What are the alternatives? You have to ship secret keys with your app to be able to access public APIs
Does this service require me to give up my private key for a given API? Seems like a huge security risk to me.
Wait, they ask for your api key and they promise not to store it !