--- title: "Managing API Tokens" slug: "managing-api-tokens" updated: 2025-09-01T11:31:08Z published: 2025-09-01T11:31:08Z canonical: "docs.insys-icom.com/managing-api-tokens" --- > ## Documentation Index > Fetch the complete documentation index at: https://docs.insys-icom.com/llms.txt > Use this file to discover all available pages before exploring further. # Managing API Tokens > [!WARNING] > ⚠️ **Important Security Notice** API tokens in iRM are **not bound to individual user accounts**. This means **anyone with access** to the list of API tokens can use them. When API tokens are used (e.g., by a third-party application), **audit logs will only show the token's name**—not the user who performed the action. For traceability and security, use tokens carefully and name them meaningfully. ## Where to Manage API Tokens To manage your API tokens, navigate to: **Administration → Settings → API Token (Tab)** --- ## How to Create an API Token ![](https://cdn.document360.io/c690fe99-a3eb-474c-a449-c2c75e5df119/Images/Documentation/API Token Overview - EN.png) 1. Click on **Create API Token** (or use the **plus icon** if tokens already exist). 2. Provide a **meaningful name** to help identify the purpose or target system of the token. 3. Click **Add**. The new token appears in the table. You can now: - **View the token** using the **eye icon**. - **Copy the token** to your clipboard using the **clipboard icon**. --- ## How to Delete an API Token ![](https://cdn.document360.io/c690fe99-a3eb-474c-a449-c2c75e5df119/Images/Documentation/API Token Delete - EN.png) 1. Select the desired token in the table. 2. Click the **trash bin icon**. 3. Confirm the deletion by clicking **Delete** in the confirmation dialog.