List API keys
GET /api-keys
GET
/api-keys
List your org’s API keys, active and revoked.
Authorizations
Section titled “Authorizations ”Responses
Section titled “ Responses ”Your keys.
object
api_keys
Array<object>
object
id
required
string
public_key
required
string
label
required
string
created_at
required
string format: date-time
revoked
required
boolean
revoked_at
string format: date-time
Missing, malformed, or invalid request signature.
Failures return a single human-readable error message; the HTTP status
carries the category (400 validation, 401 auth, 403 refused, 404 missing,
409 conflict, 429 rate limit). When a signing request is refused for a
specific reason, the message names it — for example the amount exceeds a
spend limit, the policy denied the recipient, or the intent signature did
not verify.
object
error
required
string
code
required
Stable machine slug (invalid_request, unauthorized, forbidden, not_found, conflict, rate_limited); a refused sign names the reason in the message
string
Example
{ "error": "request signature did not verify", "code": "unauthorized"}