Feature

Secrets & Credential Management

Safe storage and rotation of keys and secrets.

22 providers 81 APIs 15 declared variants

Credentials, tokens, and connection secrets are stored encrypted with rotation and scoped retrieval, rather than living in config files. Reduces the blast radius of a leak.

22 API providers on the APIs.io network offer secrets & credential management. The highest-rated are Amazon Secrets Manager, 1Password, Azure Kubernetes Service, Amazon KMS, Sketchfab.

Providers

Ranked by API Evangelist rating — Exemplar and Strong are expanded by default.

Exemplar 2 Complete, well-documented, and agent-ready
Strong 6 Solid coverage with minor gaps
Developing 7 Usable, with meaningful gaps to close
Thin 2 Limited public surface area
Emerging 4 Early or largely undocumented
Minimal 1 Almost no public developer surface

What Providers Actually Declared

This feature is a canonical term. These are the free-text strings providers wrote in their own apis.yml that map onto it.

API Key ManagementAutomatic Key RotationAutomatic Secret RotationCentralised Credential ManagementCredential ManagementEncrypted secrets management via `sst secret`JWKS endpoint with at-least-annual key rotation; SAML certs rotated yearly with year-versioned endpointsJWT short-lived bearer tokens with refresh-token rotationMCP Gateway with per-user endpoint, full JSON-RPC payload logging, per-tool access control, OAuth 2.1 credential management, audit log export, and session lifecycle trackingNexus cloud platform with project, team, role, quota, and credential managementOAuth 2.0 with Authorization Code, Implicit, and Password grants plus refresh-token rotation; bearer access tokens expire after one monthOne-hour ID tokens with refresh-token rotationPartner registration and OAuth credential management at admin.polaraccesslink.comPer-server secrets management for storing API keys and credentials used at runtimeSecrets Management

Scroll for all 15