SendPulse - Reset of old-format API keys – Incident details

All systems operational

Reset of old-format API keys

Resolved
Operational
Started 8 days agoLasted less than a minute

Affected

REST API

Operational from 7:10 AM to 12:00 AM

Updates
  • Resolved
    UTC
    Resolved

    Old-format API keys created before March 17, 2026, may have been compromised, so we're resetting all of them. We see no signs that anyone has used these keys, but we want to rule out any chance of a leak. Keys in the new format are encrypted and stored as hashes. Generate a new key in Account settings → API before 9:00 AM UTC on Wednesday, September 16.

    Everyone affected will also receive an email from us and a notification in their SendPulse account. We apologize for the inconvenience.