To create an API key:
On the lower-left corner of the page, click the Gear settings icon.
Click APIs.
Next to Activated Keys, click Create API Key.
In the pop-up window, enter the API Name, Access Type, and Expiration Date.
Click Continue.
Verify your identity with YubiKey.
Under Pending Keys, find your API Key.
Click Activate Key.
Review details in the pop-up window then click Activate API key.
Verify your identity with YubiKey.
To rotate an API key (creating a new API key and disabling an old API key):
We recommend clients rotate API keys every 90-180 days in order to protect sensitive data and reduce the risk of unauthorized access.
Record current API Key Properties, noting the type of API key (e.g. Portfolio level, Entity level or Organization level) and the roles assigned to the API key such as Trade, Transfer, Read or a combination thereof.
Create a new API key. In the Coinbase Prime UI, create a new API key with the parameters noted above. Store the new API key (Access Key), passphrase, and Signing Key in a secure location.
Test the new API key. Verify that the new API key produces the same results as the original API key.
Replace the old API key. Update any applications to use the newly created API key, replacing all instances of the original key material.
Deactivate the original API key. In the Coinbase Prime UI, deactivate the original API key to prevent any further use of this key.