Rotate database credentials
Change a managed database’s password and invalidate the previous credential.
Request & response examples
curl --fail-with-body --request POST \ 'https://app.helicarrier.xyz/api/services/YOUR_ID/db/password' \ -H "Authorization: Bearer $HELI_API_KEY" \ -H 'Content-Type: application/json' \ --data '{ "password": "REPLACE_WITH_A_STRONG_SECRET"}'const response = await fetch( "https://app.helicarrier.xyz/api/services/YOUR_ID/db/password", { method: "POST", headers: { Authorization: `Bearer ${process.env.HELI_API_KEY}`, "Content-Type": "application/json" }, body: JSON.stringify({ "password": "REPLACE_WITH_A_STRONG_SECRET" }) });const data = await response.json();if (!response.ok) { throw new Error(`HTTP ${response.status}: ${data.error}`);}// Inspect data; avoid logging secret responses.import osimport requests
response = requests.request( "POST", "https://app.helicarrier.xyz/api/services/YOUR_ID/db/password", headers={ "Authorization": f"Bearer {os.environ['HELI_API_KEY']}" }, json={ "password": "REPLACE_WITH_A_STRONG_SECRET" }, timeout=30,)response.raise_for_status()data = response.json()# Inspect data; avoid logging secret responses.{ "status": "password changed"}Illustrative values · selected fields
Path parameters
id string required Database or bucket service id.
Request body
password string required New password (databases) or secret key (buckets, min 8 characters).
accessKey string optional Buckets only: a new S3 access key. Omit to keep the current one.
Response 200
Returns confirmation after changing the database password. Update clients that hold the old credential; do not publish the replacement password.
Examples show selected response fields with illustrative values. Your response can contain additional fields.
status string Current state of the resource or operation.
Errors
400 Invalid parameters. Check the required fields, types, and resource configuration.
401 The API key is missing, invalid, or revoked.
403 The caller or key scope does not permit this operation.
500 The operation could not be completed. Check resource state before retrying a write.
rotate_db_credentials
Required MCP arguments: id, password. Send path, query,
and body fields together as tool arguments.