API keys
API access is part of the Business plan. Admins manage keys in Settings > API Keys.
When you create a key you choose:
- a role (viewer, editor or admin). A key can never be an owner;
- its scopes, which narrow what the key may do. An action needs both the role and the scope to allow it;
- when it expires, or that it never does.
The key is shown once, when it is created, so store it somewhere safe. A key acts as its own member of the workspace, not as the person who created it, and it can only reach that workspace's data. You can revoke a key at any time.