Base URL
All endpoints are served from:Request format
SetContent-Type: application/json on every request that includes a body. Endpoints that accept no body (GET requests) ignore the header.
Authentication
Every API endpoint requires a valid API key passed in thex-api-key request header. Keys are generated in the Developer Dashboard (or Settings → API Keys, which redirects there).
401 and 403 responses.
Response format
All responses — including errors — are JSON objects. Successful responses vary by endpoint. Error responses always include at minimum:Available endpoints
Capabilities below are the minimum required. A key with* (admin-only) passes everything.
Identity
Workflows
Models (Business+)
Executions (every tier)
Usage
Public
Account approval is required before any API access is granted. If your requests return
401 and your key is valid, check that your account is approved in addition to verifying the key.Some session-only endpoints (
/api/me, /api/credits/*, /api/api-keys/*, /api/business/admin/*) are not reachable with API keys by design (defense-in-depth on key + account management). Use the Developer Dashboard for those operations.