Authentication

The KitMaker API uses API keys to authenticate requests. You can view and manage your API keys in the KitMaker Dashboard.

Your API keys carry many privileges, so be sure to keep them secure! Do not share your secret API keys in publicly accessible areas such as GitHub, client-side code, and so forth.

Authentication to the API is performed via the Authorization header with the Bearer scheme. Alternatively, you can provide the key via the X-Api-Key header.

# Authorization Header (Preferred)
Authorization: Bearer <your_api_key>

# Alternative Header
X-Api-Key: <your_api_key>

All API requests must be made over HTTPS. Calls made over plain HTTP will fail. API requests without authentication will also fail.