---
title: "Regenerate App Secret"
method: POST
path: "/idp/apps/{app_id}/regenerate-secret"
tags: ["Identity Provider"]
---

# Regenerate App Secret

`POST /idp/apps/{app_id}/regenerate-secret`

Regenerate the client secret for an OAuth application.

## Path parameters

- `app_id` string, required

## Headers

- `X-Chutes-Hotkey` string, nullable
- `X-Chutes-Signature` string, nullable
- `X-Chutes-Nonce` string, nullable
- `Authorization` string, nullable

## Response `200`

Successful Response

- OAuthAppSecretRegenerateResponse — Response model when regenerating a client secret.
  - `app_id` string, required
  - `client_id` string, required
  - `client_secret` string, required

## Other responses

- `422` — Validation Error

## Changes

- **2026-08-26** `8d909638091e` — 1 info
  - endpoint added
- **2026-08-22** `05d9af05d87e` — 1 breaking
  - api path removed without deprecation

[Change history](https://skmtc.dev/chutes/apis/fastapi/changes/idp/apps/:app_id/regenerate-secret/post.md)

---

[API](https://skmtc.dev/chutes/apis/fastapi.md) · [All operations](https://skmtc.dev/chutes/apis/fastapi/llms.txt) · [OpenAPI document](https://skmtc.dev/chutes/apis/fastapi/revisions/fe1de11b2a0e?raw)
