Skip to content

Revoking your API key

Revoking (deleting) an API key on your exchange stops anyone using it again, including Scrya. It’s good practice once your verification is done, and it only takes a minute.

When is it safe?

As soon as your verification shows Verified.

Scrya checks your exchange balance once, at the moment you click Connect exchange (or Reuse and verify). It doesn’t use the key again to keep watching your account. Deleting the key won’t undo or change a completed verification.

  • Wait for the result first. If you delete the key while the check is running, your exchange rejects it and the check fails.
  • Did the connection fail? Scrya has already deleted its copy of that key. You can delete it at your exchange now and create a fresh one when you try again.

What changes after you revoke

  • Your saved key stops working. For later requests, Scrya may offer your saved key under Use a saved API key or add a new one. Once the key is revoked, Reuse and verify fails because your exchange rejects it. Choose Use a new API key and create a new read-only key instead.
  • Scrya deletes its copy anyway. Scrya deletes its encrypted copy of your key 30 days after your verification completes, whether or not you revoke it. After that, the saved key no longer appears.

Expecting another request from the same business soon? You can keep the key until then to use Reuse and verify. Otherwise, revoke it.

How to revoke a key

The steps are similar on every exchange:

  1. Sign in to your exchange on the web.
  2. Open its API management page. It’s usually under your profile or account settings.
  3. Find the key you created for Scrya. A clear name like “Scrya read-only” makes this easy.
  4. Delete it (some exchanges say revoke or remove). Confirm with your two-factor code if asked.

Deleting a key only removes access for whoever holds that key. It doesn’t touch your funds, your other API keys or your exchange login.

For exact steps, see the Revoke the key section of your exchange’s guide:

If you think your key was exposed

Delete it on your exchange straight away. A read-only key can’t move funds, but anyone holding it could see your balances. Then let us know at support@scrya.io.