# Update a kill bill connection's HMAC secret

> PATCH /connections/killbill/{conn_id}/hmac-secret

Source: https://docs.trykintsugi.com/reference/2026-07-21/update-a-kill-bill-connection-s-hmac-secret

PATCH /connections/killbill/{conn_id}/hmac-secret

Update a kill bill connection's HMAC secret

Update the shared HMAC secret Kill Bill signs inbound tax callbacks with, and push it to the Kill Bill plugin config. An empty string clears L2 verification. Returns 400 if pushing the plugin config fails. Returns 404 if the connection does not exist, is not a Kill Bill connection, or belongs to an organization your credential cannot access. A multi-org credential must send an `Organization-Id`, `Connection-Id` or `Entity-Id` selector, or gets a 400.

Category: Connections

Path parameters:
conn_id (string, required) - The unique identifier of the connection.

Request body:
hmacSecret (string, required) - HMAC secret. An empty string clears L2 verification.

Response fields:
id (string, required) - Kintsugi's unique identifier for the connection.
organizationId (string, required) - Id of the organization this connection belongs to.
platformEntityId (string) - The platform's own identifier for the entity this connection points at (e.g. a QuickBooks realm id, D365 company id, NetSuite subsidiary id). Use it to resolve a connection from an id you already hold. `null` until captured on (re)connect or backfilled.
externalId (string, required) - The connection's own external identifier: an Apideck consumer id for a Vault-backed source, or the platform-specific value the connector stores (e.g. a Shopify shop id, a Stripe publishable key).
source (string, required) - Origin platform of the connection (e.g. SHOPIFY, QUICKBOOKS). Any origin outside the published values is reported as OTHER.
  allowed values: ACUMATICA, AIRWALLEX, AMAZON, API, APPLE_APP_STORE, BESTBUY, BIGCOMMERCE, BILL_COM, BUNNY, CAMPFIRE, CHARGEBEE, CHECKOUTCHAMP (and 58 more, see the reference page)
status (PublicConnectionStatusEnum, required) - Lifecycle status of the connection.
  allowed values: ACTIVE, INACTIVE, CONNECTION_ERROR
storeName (string) - Human-readable store or account name for the connection; an empty string when the connection has none.
url (string) - Public shop/account URL when the source exposes one; not a secret.
createdAt (string, required) - When the connection was created.
updatedAt (string) - When the connection was last updated.
lastSynced (string) - When this connection last completed a successful sync.
[truncated, see the reference page]

---

Index of every page: https://docs.trykintsugi.com/llms.txt
