# API keys

Issue, inspect, rotate and revoke scoped credentials.

 - [GET /v1/keys](https://api-docs.shuffll.com/engage/openapi/api-keys/keys_list.md): List managed credential metadata; verified humans may select an exact managed target.
 - [POST /v1/keys](https://api-docs.shuffll.com/engage/openapi/api-keys/keys_issue.md): Issue a scoped credential. MCP returns an authenticated human claim link; REST returns its secret once.
 - [GET /v1/keys/{id}](https://api-docs.shuffll.com/engage/openapi/api-keys/keys_get.md): Read managed credential metadata and its current revision.
 - [DELETE /v1/keys/{id}](https://api-docs.shuffll.com/engage/openapi/api-keys/keys_revoke.md): Revoke a credential and its delegated lineage.
 - [POST /v1/keys/{id}/rotate](https://api-docs.shuffll.com/engage/openapi/api-keys/keys_rotate.md): Rotate a credential with bounded overlap. MCP returns an authenticated human claim link; REST returns its secret once.
