RESELLER
Authenticate reseller API requests
Keep reseller credentials server-side and use only the authentication method supported by the live API.
Server-side only
Do not embed reseller credentials in client-side JavaScript or public repositories.
Environment variables
Store credentials in Secrets or a secure environment configuration.
Rotation
Replace credentials if they are exposed or when your security process requires rotation.