Skip to main content
Send your secret API key in the X-API-KEY header on every request.

Create a key

  1. In the dashboard, go to Settings → API keys.
  2. Create a key. You confirm with your passcode and an emailed code.
  3. Copy the key. It is shown once. StableMesh stores only a hash of it.
Production keys start with smk_live_. When you create a key you can:
  • Restrict it to IP addresses. Use exact IPv4 or IPv6 addresses, or a a.b.c.* range, up to 20 entries. Requests from anywhere else are refused with 11003.
  • Set an expiry date. After it, the key stops working.
You can have up to 5 active keys. Revoke a key in the same place, and it stops working at once.
An API key has full control of your cards and balance. Use it only from your server. Never put it in a web page, a mobile app, or source control. The API doesn’t answer browser cross-origin requests.

Rate limit

Each key can make 20 requests per second. Above that, requests are refused with HTTP 429 and code 11004. Wait a moment, then retry.

Authentication errors