Hello JFT416,
Thank you for reaching out to Constant Contact API Developer Support. My team is here to assist outside software developers with questions about building into Constant Contact's API.
In the developer side of the website, keys can only be accessed by the user that generated them. If the key was created under a sub-user role, there are a few things to keep in mind:
Deleting the user that generated the key will not deactivate the key itself, but you will no longer be able to access/manage the key. This means that they can no longer generate a new app secret if they ever need to re-authorize the connection with the application.
Additionally, if access to the application was granted via that user, deleting the user will delete any permissions that were granted to the key by that account.
Due to this, we recommend that keys are generated and access is granted by the Account Owner user if/when possible.
Please have a look and let us know if you have any other questions!
... View more