# API key

The `ApiKey` family — 4 operations.

An API key is a machine credential for integrations. Its secret shows exactly once at minting — store it safely; revoke a key to cut an integration off.

## Operations

| Operation | Kind | What it does |
| --- | --- | --- |
| [apiKey](/reference/api-key/apiKey/) | query | Look up one record — an API key — a machine credential for integrations. |
| [apiKeys](/reference/api-key/apiKeys/) | query | The api key list — each entry is an API key — a machine credential for integrations. |
| [doomApiKey](/reference/api-key/doomApiKey/) | mutation | Permanently retire an API key — a machine credential for integrations. |
| [updateApiKey](/reference/api-key/updateApiKey/) | mutation | Edit an API key’s facts (caption); the secret and scopes are immutable. |
