Bot token reset via API
Allow an endpoint similar to webhooks to force reset token (WITHOUT GIVING BACK A NEW TOKEN) and send an email noting that someone has reset the bot token. This will let random users reset leaked tokens if they find them without having to log them 1k times, which is a lot of effort and is considered API abuse.
16
-
I think this is a good idea. Not only because people can find leaked tokens, but so that we can have checks in place to detect abnormal behaviour of our own bots. That way we can prevent damage to the servers
2 -
There's no reason not to add this
0
U moet u aanmelden om een opmerking te plaatsen.
Opmerkingen
2 opmerkingen