Mints a new secret for an org-scoped customer service account. The previous secret keeps working for up to 7 days (or until its own expiration, if sooner) so callers can roll over without downtime. Body and secret_expires_after_hours are optional; omitted values default to 2160 (90 days). Requires ORG_ADMIN.
Responses
-
Unsupported or malformed API version, an operation unavailable in the selected published contract, or an unacceptable representation (including unsupported media-type parameters or excluded SSE). Existing authentication, authorization, and rate-limit failures take precedence.
-
OK
-
Bad Request
-
Forbidden
-
Not Found
-
Too Many Requests
-
Internal Server Error
-
Service Unavailable
POST
/api/v1/organizations/{id}/service-accounts/{client_id}/rotate
curl \
--request POST 'https://agentengine.mongodb.com/api/v1/organizations/{id}/service-accounts/{client_id}/rotate' \
--header "Authorization: $API_KEY" \
--header "Content-Type: application/json" \
--data '{
"secret_expires_after_hours": 42
}'
Request examples
{
"secret_expires_after_hours": 42
}
Response examples (406)
Operation unavailable
{
"detail": "This operation is not available in API version 2026-09-20-preview.",
"error": 406,
"errorCode": "OPERATION_NOT_IN_API_VERSION",
"parameters": [
"Accept"
],
"reason": "Not Acceptable"
}
{
"detail": "This operation supports text/event-stream, which the Accept header excludes. Remove unsupported media-type parameters or accept this type with a positive q value.",
"error": 406,
"errorCode": "UNACCEPTABLE_MEDIA_TYPE",
"parameters": [
"Accept"
],
"reason": "Not Acceptable"
}
{
"detail": "The requested API version is not supported. Supported versions: 2026-09-20-preview.",
"error": 406,
"errorCode": "UNSUPPORTED_API_VERSION",
"parameters": [
"Accept"
],
"reason": "Not Acceptable"
}
Response examples (406)
{
"detail": "This operation is not available in API version 2026-09-20-preview.",
"error": 406,
"errorCode": "OPERATION_NOT_IN_API_VERSION",
"parameters": [
"Accept"
],
"reason": "Not Acceptable"
}
Response examples (200)
{
"client_secret": "string",
"service_account": {
"active_secret": {
"created_at": "string",
"expires_at": "string",
"last_used_at": "string",
"masked_value": "string"
},
"client_id": "string",
"created_at": "string",
"description": "string",
"id": "string",
"ip_access_list": [
"string"
],
"is_active": true,
"is_system_managed": true,
"name": "string",
"org_id": "string",
"owner": "string",
"project_id": "string",
"role_assignments": [
{
"org_id": "string",
"project_id": "string",
"role": "string"
}
],
"type": "string",
"updated_at": "string"
}
}
Response examples (200)
{
"client_secret": "string",
"service_account": {
"active_secret": {
"created_at": "string",
"expires_at": "string",
"last_used_at": "string",
"masked_value": "string"
},
"client_id": "string",
"created_at": "string",
"description": "string",
"id": "string",
"ip_access_list": [
"string"
],
"is_active": true,
"is_system_managed": true,
"name": "string",
"org_id": "string",
"owner": "string",
"project_id": "string",
"role_assignments": [
{
"org_id": "string",
"project_id": "string",
"role": "string"
}
],
"type": "string",
"updated_at": "string"
}
}
Response examples (400)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (400)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (403)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (403)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (404)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (404)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (429)
# Headers
Retry-After: string
# Payload
{
"code": "string",
"error": "string",
"success": true
}
Response examples (429)
# Headers
Retry-After: string
# Payload
{
"code": "string",
"error": "string",
"success": true
}
Response examples (500)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (500)
{
"code": "string",
"error": "string",
"success": true
}
Response examples (503)
# Headers
Retry-After: string
# Payload
{
"code": "string",
"error": "string",
"success": true
}
Response examples (503)
# Headers
Retry-After: string
# Payload
{
"code": "string",
"error": "string",
"success": true
}