---
title: Application Token
slug: kronpam-reference-guide-3-5-0/application-token
description: Learn how to enhance the security of client applications by managing passwords through SAPM and accessing them using the AAPM Rest API. Discover the process of setting up SAPM and AAPM accounts to ensure the protection of target systems from potential att
docTags: 
createdAt: 2022-07-31T14:06:34.000Z
---

Applications, programs, or scripts log in with the credentials of target systems, databases, etc., just like real people do. The passwords that the client applications use are stored in databases, configuration files, etc. This makes the target systems vulnerable if the client application is hacked or compromised in any way, causing the passwords to be accessed and used to attack the target systems.

To prevent this, target system passwords can be managed by Password Vault, and client applications can retrieve account passwords using Application Token Rest API.

:::hint{type="info"}
Before configuring AAPM accounts, an SAPM account should be created.
:::

