Skip to main content
API keys are for server-to-server access. Only tenant admins can create or revoke them. The raw secret is shown once on create.

Create a key

Store api_key from the response. Later list and delete calls only show key_prefix.
1–100 characters.
Defaults to ["role:viewer"].
Optional, 1–365. Omit for no expiry.

Call the API

Scopes

Maps the key to a tenant role.
Required if the key lists any fine-grained scopes and you call /markets.
Required if the key lists any fine-grained scopes and you call /forecasts.
If you set markets:read but omit forecasts:read, forecast endpoints return 403. Either use only a role:* scope, or include every fine-grained scope you need.

Revoke