Boosted by cstanhope@social.coop ("Your weary 'net denizen"):
harrysintonen@infosec.exchange ("Harry Sintonen") wrote:
Retroactively changing the role of a token or key is a very bad idea.
https://trufflesecurity.com/blog/google-api-keys-werent-secrets-but-then-gemini-changed-the-rules