Currently, the API key used in the KB widget JavaScript is visible within the widget code. When the KB widget is integrated into an application, anyone with access to the JS code can view the API key. Some of our customers have raised this as a security concern and have requested that the API key be encrypted. While we currently provide a Restricted Domains option to ensure that the KB widget is only installed on authorized domains, customers feel that this does not fully address their security concerns. Therefore, they have requested enhancements such as encrypting the API key or introducing a mechanism where the API key rotates or changes dynamically.