Skip to main content
Active ⭐️⭐️⭐️
September 30, 2026
Gathering Interest

API endpoint(s) to update secrets and credentials

Related products:REST APIData WorkflowsFunctionsTransformations
  • September 30, 2026
  • 3 replies
  • 11 views

Manual rotation of credentials is often time-consuming and leads to outages when done incorrectly. To make it simpler to automate, could Cognite add API endpoints dedicated to updating credentials?

This is especially relevant for Cognite functions, which currently require sometimes lengthy redeployments to update secrets. When I ask GitHub Copilot about which API endpoints Cognite Toolkit invokes to update secrets and credentials used by a Cognite function, implementing this myself on top of the existing API seems very brittle.

I think automating the rotation of credentials will be much simpler if it can be decoupled from other deployment processes.

    3 replies

    Markus Pettersen
    MVP ⭐️⭐️⭐️⭐️⭐️
    MVP ⭐️⭐️⭐️⭐️⭐️
    October 2, 2026

    This has been a challenge at Aker BP for several years. Whenever a secret expires we have to redeploy the function rather than simply updating the secret reference. An improvement on this process would be greatly appreciated.

    Peter  Arwanitis
    Practitioner ⭐️⭐️⭐️
    Practitioner ⭐️⭐️⭐️
    October 2, 2026

    an alternative discussed in this context in the past is to replace secrets (and as such need to rotate) by other authentication mechanisms like Azure Federated Identities. To my knowledge this has not made it into CDF roadmap.

    Que Tran
    Practitioner ⭐️⭐️⭐️
    Practitioner ⭐️⭐️⭐️
    October 2, 2026

    Hi Ivar,
    Thank you for the feedback! This request has been forwarded to the relevant team and we will get back to you soon with an update.

    Best regards,
    Que Tran