Credentials are trust surfaces first
The inventory page should say quickly whether a key is known, expected, shared, or weakly explained.
That is more useful than a masked prefix list.
API Keys Meaning Layer
Operator Brief
1 key changes the story
One unknown key is enough to reframe several sessions, files, and outbound paths above the raw inventory table.
Question This View Answers
Which credential lane matters most right now?
Keys seen
3
Only one is story-defining
Unknown keys
1
This is the main inventory trust break
Shared usage
2 lanes
One expected, one weakly explained
Immediate review value
high
Closing the key story clarifies much else
c6 List Reference
1 unknown API key
sk-ant-...C001 is not in the org allowlist and has an active session.
Keys observed
3
Unknown keys
1
Immediate review
Primary org
qpoint-dev
Live unknown spend
$0.61
Why Borrow This Shape
Raw API Key Inventory
Prefix, organization, sessions, spend, status, and last seen.
| Key prefix | Organization | Sessions | Total cost | Status |
|---|---|---|---|---|
| sk-ant-...A3F2 | qpoint-dev | 33 | $47.20 | known |
| sk-ant-...7B91 | qpoint-ci | 11 | $0.82 | known |
| sk-ant-...C001 | unknown | 1 | $0.61 | unknown |
Why API Keys Matter
The inventory page should say quickly whether a key is known, expected, shared, or weakly explained.
That is more useful than a masked prefix list.
Because credentials sit above sessions and external traffic, one trust break can explain much of the dashboard story.
This is why keys deserve meaning-first treatment.
Operators should know immediately what gets clearer if the key is suspended, matched, or rotated.
That is the operational abstraction the page should add.
Priority Queue
Unknown key with active usage and a direct alert relationship.
Why It Matters
Fastest path to clarifying the current trust story.
Known but broad lane.
Why It Matters
Useful baseline and blast-radius comparison.
Automation-only path with lower consequence.
Why It Matters
Useful to separate routine from the current unknown.
API Keys Relationship Map
Credential trust map
Use the map to connect the key to sessions, hosts, files, and outbound traffic in one operator view.
Identity, adjacency, activity, and posture around one representative item.
Trust anchors
What is missing?
Attached work
Where is it used?
credential
sk-ant-...C001
Unknown owner with active usage and shared scope.
Company context
Why does it matter?
Boundary paths
What does it unlock?
trust level
low
linked sessions
6
containment value
high
next drill
session + file story
Representative Entity
sk-ant-...C001
Raw Evidence Paths
Raw API Keys Listing
Full rows, totals, timestamps, and supporting inventory attributes.
Open raw listRepresentative Raw Detail
Inspect the canonical entity page after the meaning layer narrows focus.
Open raw detail