API keys on the dashboard
2026-03-24 · Using the API
Create a key, copy it once, and send it as a bearer token. You can revoke it later.
Keys are created in the dashboard. The full secret is shown once. After that the server only has the hash. If you lose it, create another and revoke the old one.
Use a different key per environment. Production and a laptop should not share a key. Revoking the laptop key then does not stop production.
The prefix is what you can still see in the list, so you can tell keys apart without the secret.
Last-used is updated as the key is called. A key that never moves is unused, not broken.
Ready to call it? Start with the quickstart, the API guide, or pricing.