Skip to main content
POST
Rotate a callback credential

Authorizations

Authorization
string
header
required

Bearer token authentication (format: "Bearer {token}")

Path Parameters

credentialId
string<uuid>
required

Id of the live credential to rotate

Example:

"550e8400-e29b-41d4-a716-446655440000"

Response

Created

createdAt
string
required

Mint time (RFC 3339, UTC)

credentialId
string<uuid>
required

Surrogate id of the minted credential

token
string
required

Raw bearer token, surfaced exactly once; configure it as the X-Callback-Token header value in the external system. Only its SHA-256 hash is stored server-side.

externalSystem
string

Operator-legible external-system label, echoed for confirmation

webhookUrlHint
string

Informational inbound-callback URL shape to configure in the external system. The {exceptionId} placeholder is filled per callback.