KintsugiKintsugi

Update an API key

PATCH/api-keys/{api_key_id}

Update an organization API key's expiry. Requires a user credential (an Owner or Admin of the organization, selected with an Organization-Id). A PORTFOLIO-scope Api-Key caller still must select a target (403 without one, matching every other verb on this family) but is always refused once it has (404), since client-scoped keys have no update capability for any caller. Only a direct organization key can be updated; any other key returns 404. Send expiresAt to set a new expiry or null to remove it; an empty body returns 400. The response is empty on success.

Authorization

Api-KeystringRequired

Your secret API key. Include it with every request.

Headers

Api-Versiondate

Release date, as YYYY-MM-DD. Defaults to 2026-07-21.

Organization-Idstring

Target organization id (Organization-Id selector). Omit to manage portfolio keys as a bearer. Required for a PORTFOLIO-scope Api-Key, which may only manage one client org's keys at a time.

Connection-Idstring

Target connection id; resolves to its organization.

Entity-Idstring

Platform entity id; resolves to a connection's organization.

Entity-Sourcestring

Optional source to disambiguate an Entity-Id.

Path parameters

api_key_idstringRequired

Opaque identifier of the API key to update. Treat as opaque.

Body

expiresAtstring

New expiry for the key (RFC-3339 UTC with an explicit Z), which must be in the future. Send null to remove the expiry so the key never expires. Omit the field and the request is rejected, since there is nothing to change.

Response

204

Successful Response

400

The request was invalid.

401

Authentication failed or was missing.

403

The credential is not permitted for this request.

404

The requested resource was not found.

409

The request conflicts with existing state.

422

The request failed validation.

503

A service this request depends on was unavailable. Retry the request.

cURL
PATCH /api-keys/{api_key_id}
-H "Api-Key: ***"
-H "Api-Version: 2026-07-21"
{
"expiresAt": "2026-07-21T15:30:00Z"
}
Example request
https://api.trykintsugi.com/api-keys/{api_key_id}
Response
{
"code": "invalid_request",
"message": "Send `expiresAt` to change the key's expiry, or null to remove it.",
"requestId": "req_8f3k2mNpQr7Ls",
"errors": []
}
Update an API key (2026-07-21) | Kintsugi API Reference