If the request includes the
X-Api-Key header, Bold uses API key authentication. Otherwise, it validates the request as a user session.Get an API key
You must be an administrator to create or disable API keys. In the app, you manage them in Control panel > Access > API keys.1
Open API keys
Go to Control panel and open API keys in the Access group.
2
Create a key
Click Create new API key. Enter a value in Key name, such as
Production management or Inventory analysis.3
Save the secret
Click Create key and copy the value shown in API key created. The full key is only displayed at this point.
4
Confirm you have copied it
Save the key in your integration’s secret manager and confirm with I have copied and saved it.
Use API keys
Use API keys for technical integrations. The key identifies the organization and is a secret credential. Send it in theX-Api-Key header.
- Create a key for each external system.
- Use descriptive names such as
Production managementorInventory analysis. - Rotate the key if you suspect it was shared outside the authorized system.
- Revoke keys that are no longer used.