name and its short keyPrefix, which is the visible prefix displayed in listings.
You can only manage API keys that belong to your own license. Operations on keys from another license will return a 403 error.
Create a key
Send aPOST request to /api/v1/api-keys with a name (3–120 characters) and a role. The response body contains both the key metadata (apiKey) and the plain-text token you will use in subsequent requests.
token field is the complete key you pass in the X-API-Key header. The keyPrefix is the short prefix shown in all future listings — it lets you identify which key you are looking at without exposing the full value.
List keys
Send aGET request to /api/v1/api-keys to retrieve all keys for your license. The response is an array of API key objects. The full key value is never included in list responses — only the keyPrefix and metadata are returned.
Update a key
Send aPATCH request to /api/v1/api-keys/{apiKeyId} to change the key’s name, role, or enabled status. All fields are optional — include only what you want to change.
"enabled": false) causes it to be rejected immediately on the next request.
Revoke a key
Send aDELETE request to /api/v1/api-keys/{apiKeyId} to permanently remove a key. Revocation takes effect immediately.
204 No Content with an empty body.