API keys
Create, use and revoke API keys for scripts and integrations.
An API key lets a script or tool call the API as you, without your password and without an interactive login.
Create a key
- Open Account Settings and find the API Keys card.
- Enter a Name that tells you where the key will be used, such as
CI deploy key. - Choose Create key.
- Copy the key from the banner right away. This is the only time the full key is shown. It cannot be displayed again. Then choose Done, I've copied it.
The card lists your keys with name, last used time and creation date. A key that has never been used says so.
Use a key
Send it as a bearer token on every request:
curl https://veneshcloud.ir/api/orders \
-H "Authorization: Bearer $VENESH_API_KEY" \
-H "Accept: application/json"
Keep the key in an environment variable or a secrets manager. Never put it in source code, a web page or a public repository.
Revoke a key
Choose Revoke on its row and confirm. Anything using that key stops working immediately, and this cannot be undone. Create a new key if you still need one.
A key can do what your signed-in session can do, including creating VMs that spend from your wallet. Create one key per tool, name it clearly, and revoke any you no longer use or suspect has leaked.