How do you handle API key rotation across multiple AI agent workflows in n8n?
Hey r/n8n, I’m researching best practices for securing n8n workflows that use multiple AI agents (OpenAI, Anthropic, etc.). One thing I keep seeing: teams sharing the same API key across all their workflows. This creates: No audit trail (who triggered what?) Revocation breaks everything Compliance (
Hey r/n8n, I’m researching best practices for securing n8n workflows that use multiple AI agents (OpenAI, Anthropic, etc.). One thing I keep seeing: teams sharing the same API key across all their workflows. This creates: No audit trail (who triggered what?) Revocation breaks everything Compliance (SOC2) becomes a nightmare How are you handling this? Separate environments? Secret managers like Vault? Or shared keys and hope for the best? I’m putting together a guide on this – your feedback would be super helpful!" 2 posts - 2 participants Read full topic
Original Source
n8n Community
