Settings
API keys
For your own code. Every key can do exactly what its scopes say and nothing else.
Your keys
1 has never been used. An unused key with write access is the one to revoke first.
Website order hookdk_live_7f2a…
contacts:writemessages:sendmade 12 Mar 2026 by Nadia Okonkwo
Reporting exportdk_live_c410…
analytics:readposts:readmade 2 Jun 2026 by Theo Marchetti
Old Zapier connectiondk_live_9b81…
posts:writeposts:readmedia:writemade 9 Jan 2026 by Nadia Okonkwo
Apps you have let in
Anything authorised through a sign-in rather than a key — assistants, integrations, and anything speaking MCP.
ClaudeAI assistant
posts:read, analytics:readlet in by Nadia Okonkwo on 18 Jun 2026used This morning
ZapierIntegration
posts:write, contacts:writelet in by Theo Marchetti on 3 Feb 2026used Yesterday
Shopify · Kilo CoffeeIntegration
contacts:writelet in by Nadia Okonkwo on 22 Apr 2026used 12 minutes ago
A key is a password with a job. Never put one in front-end code — anything in a browser can be read by anyone using that browser.