diff --git a/steering/settings.py b/steering/settings.py
index 8d0aa1f34e387072d1a908bc03977238ff266283..0d0c70aaa714e838d4c28cf545b27ee1b179d380 100644
--- a/steering/settings.py
+++ b/steering/settings.py
@@ -140,7 +140,7 @@ CBA_URL = "https://cba.fro.at"
 
 # Contact cba@fro.at to get whitelisted and get an API KEY
 # Leave empty to disable requests to CBA
-CBA_API_KEY = ""
+CBA_API_KEY = os.getenv("CBA_API_KEY", default="")
 
 # URL to CBA ajax handler (used for retrieving additional data or increasing stream counter)
 CBA_AJAX_URL = CBA_URL + "/wp-admin/admin-ajax.php"