Rotate or disconnect keys
ON THIS PAGE
Treat broker keys like any credential: replace (“rotate”) them on a schedule, and immediately if you think they may have leaked.
Rotating
Generate a fresh pair at Alpaca, then save it over the old one in Settings → Broker. The save tests the new pair first, so a failed rotation leaves your old working keys in place. There’s no gap where the account is half-connected. Once the new pair verifies, revoke the old one at Alpaca. If you have two-factor authentication turned on, you may be asked to confirm your authenticator code before the new keys save. Saving credentials is a protected action.
Disconnecting
The Disconnect button on each broker card clears the stored keys for that environment. Without keys SleeveFolio can’t read your account or submit orders there; the dashboard shows its not-configured state until you reconnect. Orders already open at the broker keep running on their own. Manage them from the Alpaca dashboard while disconnected.