Skip to main content
PATCH
cURL

Authorizations

Authorization
string
header
required

JWT Bearer token obtained from authentication. Pass as: Authorization: Bearer

Path Parameters

id
string
required

Unique identifier of the API key to update

Pattern: ^[cC][^\s-]{8,}$

Body

application/json

Request body for updating an existing API key

name
string

Updated human-readable label

Required string length: 1 - 100
scopes
enum<string>[]

Updated permission scopes

Minimum array length: 1

A single permission scope, or the wildcard '*' for full access

Available options:
*,
email:read,
email:send,
phone:read,
phone:sms,
phone:voice,
phone:provision,
messages:read,
messages:send,
messages:search,
voice:read,
vault:read,
vault:use,
vault:write,
vault:share,
vault:oauth,
vault:inject,
identity:read,
identity:write,
agents:read,
agents:write,
inbox:read,
inbox:write,
domains:read,
domains:write,
addresses:read,
addresses:write,
webhooks:read,
webhooks:write,
billing:read,
audit:read,
extension:connect
expiresAt
string<date-time> | null

Updated expiration timestamp, or null to remove expiration

Response

200 - application/json

OK

API key resource without the secret value

id
string
required

Unique identifier for the API key

Pattern: ^[cC][^\s-]{8,}$
orgId
string
required

Organization that owns this API key

Pattern: ^[cC][^\s-]{8,}$
agentId
string | null
required

Agent this key is restricted to, null if unrestricted

Pattern: ^[cC][^\s-]{8,}$
name
string | null
required

Human-readable label for the API key

prefix
string
required

Non-secret prefix of the key for identification

mode
enum<string>
required

Environment mode of the key

Available options:
LIVE,
TEST
scopes
string[]
required

Permission scopes granted to this key

revoked
boolean
required

Whether the key has been revoked

createdAt
string<date-time>
required

ISO 8601 timestamp when the key was created

lastUsedAt
string<date-time> | null
required

ISO 8601 timestamp when the key was last used, null if never used

expiresAt
string<date-time> | null
required

ISO 8601 timestamp when the key expires, null if no expiration

createdBy
string | null
required

User ID of the key creator, null if created by system

extension
object | null

Extension-token settings surfaced from metadata. Present only for extension:bridge keys.