API Tokens: Issue, Expire, Revoke addresses a problem most SAP landscapes know too well: Speed without masking and tokens invites data incidents that erase savings.

Sensitive columns never rely on 'trust the integrator' — they rely on platform enforcement.

Sensitive columns never rely on 'trust the integrator' — they rely on platform enforcement.

Capabilities you use in iDataEngine

  • Masking rule sets import/export
  • Masking audit trail
  • Rate limit per minute/hour
  • API token login and expiry
  • Certificate upload validation
  • IP allow/block lists

Recommended workflow

  1. Extend the same definition to the next channel (API, SQL, MF, BI) without redesigning from scratch.
  2. Save and capture the generated URL, job ID, or snapshot reference in your change record.
  3. Configure source objects, fields, mappings, or rules using session language and customer/system context.
  4. Open the relevant cockpit (iDataView Explorer, SQL Project, API Service Detail, or AccessGuard).

Real-world scenario (2021)

Payroll columns masked in SQL Transfer and omitted from API fieldset — same policy, two channels, one rule set.

Why it matters

Trust is a feature: customers integrate faster when IP lists, rate limits, and audit trails are demonstrable.

The competitive edge is not more developers; it is removing wait states between idea, data, and delivery.