Remediation Steps
- Revoke the Compromised Key:
- Open the API Keys dashboard.
- Find the leaked key and immediately click Revoke.
- Generate a Replacement Key:
- Click Create API Key.
- Update your production environment variables (Vercel, AWS, Fly.io, Railway, Heroku).
- Audit Activity Logs:
- Review Activity Logs in the dashboard to check if any unauthorized messages were dispatched while the key was exposed.
- If spam was dispatched, check your Suppression List and contact Mailofly support.