Skip to main content
GET
List API keys

Authorizations

Authorization
string
header
required

Bearer authentication using a factapi-issued API key (ffy_<env>_<base32_uuid><base62_random>). Cookie-based sessions are accepted automatically by user-facing endpoints but are not surfaced as an OpenAPI auth scheme.

Headers

X-Factify-Organization-Id
string

Optional. Factify-staff acting-as override: when set, factapi resolves the request against this organization instead of the session-bound one. Honored only for callers with @factify.com emails; non-staff requests carrying this header are rejected with 403. The value is a typed org id (e.g. org_01h2xcejqtf2nbrexx3vqjhp41).

Pattern: ^org_[0-9a-hjkmnp-tv-z]{26}$
Example:

"org_01h2xcejqtf2nbrexx3vqjhp41"

Query Parameters

include_revoked
boolean

Whether to include revoked keys. Defaults to false. Expired-but-not-revoked keys are always returned; use the is_active field to filter currently usable keys.

Example:

false

Response

A list of API keys for the organization.

A page of API keys for the caller's organization. Secrets are never included.

api_keys
object[]
required

API keys for the organization.