Skip to main content

API related question - managing API keys

  • December 10, 2025
  • 1 reply
  • 8 views

benwanless

Is there any recommendation from Gainsight how to manage these considering we only are allowed one key at a time, and users change like all the time?

1 reply

sdrostgainsightcom
Forum|alt.badge.img+4
  • Gainsight Employee ⭐️⭐️⭐️
  • December 16, 2025

Hi ​@benwanless -- just want to confirm I understand the question and then I can track down some answers -- you are referring to the Gainsight API key that a Gainsight Admin can set/refresh to provide to other data owners in your org that want to make API calls to Gainsight, yes?

And the issue is that when the Admin user who created or refreshed the token is set to Inactive (leaves the organization, etc.), the token is invalidated, yes?

If that’s the case, then I believe there are some roadmap items under discussion and I’ll check into it -- that said, given the current security climate, I wouldn’t be surprised if we also didn’t add a back-end process that invalidates an API key if it hasn’t been used for, say, X number of days/months and so on.

Let me know!

Scott