Help Center / API & Developers

Authenticating API requests

All API requests require a Bearer token in the Authorization header. Generate a key from Settings → API → New API Key — keys are scoped to a single workspace.

Treat API keys like passwords: never commit them to source control, and rotate them immediately if one is ever exposed. You can revoke a key at any time with no downtime for other keys.

Was this article helpful?

Still need help?

© 2026 Nova. All rights reserved.

Create a free website with Framer, the website builder loved by startups, designers and agencies.