Wrap your Stability AI keys in proxy tokens with spend limits, IP restrictions, and instant revocation.
See how ShieldKey protects your Stability AI integration with minimal code changes.
const response = await fetch(
"https://api.stability.ai/v1/generation/stable-diffusion-xl/text-to-image",
{
method: "POST",
headers: {
"Authorization": "Bearer sk-abc123...", // ← leaked
"Content-Type": "application/json"
},
body: JSON.stringify({ text_prompts: [{ text: "a cat" }] })
}
); const response = await fetch(
"https://proxy.shieldkey.io/stability/v1/generation/stable-diffusion-xl/text-to-image",
{
method: "POST",
headers: {
"Authorization": "Bearer sk_shield_t_4a9d...", // ← revocable
"Content-Type": "application/json"
},
body: JSON.stringify({ text_prompts: [{ text: "a cat" }] })
}
); Disable any team member's access to your Stability AI key in one click. No key rotation. No downtime. No re-deploying environment variables.
Set per-token spend caps so a compromised token can't run up your Stability AI bill. Get alerts before limits are hit.
Restrict each shield token to specific IPs or CIDR ranges. Even if a token leaks, it's useless from unauthorized networks.
See every API call made through your Stability AI key — who made it, when, from where, and what they accessed.
Your Stability AI key is encrypted with AES-256-GCM. It's only decrypted in memory during request proxying — never stored in plaintext.
Issue individual shield tokens to each team member. When someone leaves, revoke their token — everyone else keeps working.
Add your Stability AI key to ShieldKey's encrypted vault. ShieldKey generates a proxy token (starting with sk_shield_t_) that your team uses instead. Your real sk- key stays encrypted and is never exposed to team members.
Yes. Point your stability-sdk SDK at proxy.shieldkey.io and use a shield token instead of your real API key. The SDK works identically — ShieldKey transparently proxies every request.
Revoke their shield token from the dashboard. Your real Stability AI key stays active — no rotation, no downtime, no re-deploying secrets across services. Everyone else keeps working without interruption.
ShieldKey's proxy adds less than 25ms at the p50. The proxy decrypts your key in memory, forwards the request, and streams the response back. For most Stability AI API calls, this overhead is negligible.
Set up ShieldKey in under 5 minutes. No credit card required.
Start Free