01 Principles
Credentials follow least privilege, environment separation, named ownership, and traceable change. Test and production must not share credentials.
02 Lifecycle
- A customer platform admin creates authorization or credentials in the official portal.
- Transfer them through a controlled channel to named implementation personnel; never place them in public docs, screenshots, or ticket text.
- After configuration, record only validation results, not plaintext secrets or tokens.
- Rotate on the customer security schedule and after personnel changes.
- Revoke immediately when a channel is retired, exposure is suspected, or the engagement ends.
03 Access and Audit
Limit Integrations and sensitive settings to administrators. Record channel, environment, owner, effective time, and validation result for issuance, rotation, and revocation without storing secret values.
04 Incident Response
When exposure is suspected, revoke or rotate first, then review authorization scope, activity logs, abnormal synchronization, and unknown request sources.