An agent access key lets an AI coding agent act in your account — but only within the permissions you give it. You can create as many as you like, review how they’re used, and switch any of them off instantly.
Create a key
- Go to Settings → API & Agents.
- Click Create key.
- Give it a clear name — use one key per agent or per use case (e.g. “Claude Code – support triage”).
- Choose its permissions — turn on only what this agent needs (see What your AI agent can and can’t do).
- Optionally set an expiry date.
- Click create.
Copy it once
The full key is shown only once, right after you create it. Copy it and store it somewhere safe, like a password manager. After that, the list shows only a masked preview (e.g. hE4fLv…QwGJw) — for security, the full value can’t be shown again. Lost it? Just revoke it and create a new one.
Review your keys
The keys list shows, for each key:
- Name and a masked preview of the key
- Permissions it was granted
- Created date and Last used
- Calls — how many successful actions the agent has run with it
Revoke a key
Click the menu on any key and choose Revoke. That instantly cuts off that agent — it can no longer act in your account. Revoking one key never affects your other keys or your own login.
Good practice
- Grant the fewest permissions an agent needs.
- Use one key per agent so you can revoke precisely.
- Set an expiry for keys you’ll only need temporarily.
- Revoke keys you no longer use.