Your original posting is a bit hard to understand, and I don’t know any of the services or software.
You have an OpenAI key openai_apiKey that you don’t show as a sk-proj- key that would be for OpenAI services, ending with e3Zm. Then you say you change it, to ending with HwA, that you got from your API project. That makes it sound like the field is for some proprietary service and their own keys.
Plus: if you don’t know where your keys are going, and you are sending them to some random github code written in Chinese or whatever service “sTEB AI” is, there’s a good chance you’ve found some code in the style of “put in your API key here for it to be stolen”. The code repo for that “dazi” or “dhazi” literally has an organization key hardcoded in it, along with a random-looking .cn domain and subdomain for another api, showing how bad it is. Then the other service is chatanywhere.apifox.cn. OpenAI keys and code, where it is prohibited by OpenAI?
So there’s a good chance you’ve already transmitted that key by putting it into the field where another key was. It should be deleted from the project.
It is important to understand the code you run, and understand the APIs being called for AI services.
A far more trustworthy place to start. GitHub - openai/openai-realtime-embedded: Instructions on how to use the Realtime API on Microcontrollers and Embedded Platforms