x-api-key header, and your account must hold the right capabilities for the endpoint. This page covers each step end-to-end.
Generate a key
Sign in to knouds.ai and open the Developer Dashboard (also accessible from Settings → API Keys, which redirects). Click Create Key and pick a preset:
The plaintext key is shown only once at creation — copy it immediately and store it safely. If you lose it, revoke the key and generate a new one.
Send your key
Pass the key in thex-api-key request header:
401 or 403 response.
Capabilities
Each key carries a SET of capabilities, granted at creation time. Capabilities are orthogonal — a key withmodel:run does not automatically get workflow:write. Mix and match by use case (read-only audit key, single-flow CI key, full deploy key).
If your key’s capability set does not cover the endpoint you’re calling, the API returns:
required field tells you exactly which capability would have passed. Either regenerate the key with broader capabilities (capped by your tier) or upgrade your tier.
See API Reference → Authentication for the full capability vocabulary, match logic, and error responses.
Rotate or revoke a key
Keys never expire automatically. To rotate:- Open the Developer Dashboard
- Click Revoke on the old key
- Click Create Key to generate a replacement
- Update your integration’s
x-api-keyheader