Protect your account
Every Zulip user has an API key, which can be used to do essentially everything that you can do when you’re logged in. You should treat your Zulip API key as carefully as you treat your password. Integrations should use a bot’s API key rather than your own whenever possible.
Be sure to change both your password and API key immediately in the following situations:
- Accidentally sharing your password or API key with someone else.
- Losing a device where you’re logged in to Zulip (e.g., a cell phone or laptop).
- Losing a device that has a downloaded copy of your
zuliprc
file, which includes your API key.
Changing your API key will immediately log you out of Zulip on all devices.
Change your password and API key
Section titled “Change your password and API key”- Go to Account & privacy.
- Under Account, click Change your password.
- Enter your old password and your new password, and click Change.
- Under API key, click Manage your API key.
- Enter your new password, and click Get API key.
- Click Generate new API key.