Skip to main content
POST
Create an API key

Authorizations

Authorization
string
header
required

An aik_… programmatic API key (app.atako.ai → Settings → API keys) or a Supabase session JWT.

Body

application/json
name
string
required
Minimum string length: 1
scope
enum<string>
default:write
Available options:
read,
write
expiresInDays
enum<integer> | null

Null or omitted = never expires.

Available options:
30,
90,
365

Response

Response of POST /users/api-keys — token is the plaintext aik_… key, shown once and never retrievable again.

id
string<uuid>
required
name
string
required
keyPrefix
string
required
active
boolean
required
scope
enum<string>
required

read: GET only. write: everything except the operations marked x-atako-api-key: forbidden.

Available options:
read,
write
expiresAt
string<date-time> | null
required

Past this instant the key is refused (401 API_KEY_EXPIRED). Null = never.

createdAt
string<date-time>
required
token
string
required

aik_… — store it now, it is never shown again.

lastUsedAt
string<date-time> | null