Secrets Manager
Manage workspace environment configuration and the lifecycle of runtime secrets.
Open Secrets Manager to inspect environments and their secret configuration. These are configuration containers for runtime credentials, separate from the task execution contracts in Evaluation environments.
Select the intended environment, create or update the required values, and attach the configuration through the resource's supported controls. Verify which application, sandbox, or workflow consumes it before changing a value. Keep secrets on the server and out of prompts, source control, screenshots, and client-side bundles.
To rotate a credential, prepare its replacement, update the consuming configuration, verify the operation, and revoke the old credential. Removing an environment value and revoking access at the provider are separate steps. Review attachments before deleting configuration that other workloads use.
Provider account authorization is covered by Integrations; API key lifecycle is covered by Identity & Access.