Added
Multiple API keys
about 1 month ago by Johan Brissmyr
Castle now lets you create multiple Publishable API Keys and API Secrets. Unlike the previous single-key model where rotating a key broke all integrations at once, you can now maintain separate keys per integration and rotate them independently without downtime.
Available on Enterprise plans.
Create a new key, migrate traffic gradually, then delete the old key when ready. Separate keys for web, mobile, backend services means if one is compromised, the others remain secure. Label each key by purpose (Production Web, Mobile iOS, Events API).
Your current keys continue working unchanged - no migration required. Existing keys are automatically named "Default".