> ## Documentation Index
> Fetch the complete documentation index at: https://docs.aircaps.com/llms.txt
> Use this file to discover all available pages before exploring further.

# API keys

> Create, use and revoke keys.

Every request needs an API key in the `Authorization` header:

```http theme={null}
Authorization: Bearer aircaps_sk_...
```

* **Create keys** in the console: [playground.aircaps.com → API keys](https://playground.aircaps.com/api-keys). A key is shown once; AirCaps stores only a hash.
* **One key, both models.** The same key works for the REST API and the streaming WebSocket.
* **Up to 10 active keys** per account. Use one per service or environment so you can revoke them independently.
* **Revoke** a key in the console. It stops working within 60 seconds.
* **Keep keys server-side.** Never put a key in a browser, mobile app or public repository.

Requests without a valid key return `401 unauthorized`. A disabled account returns `403 account_disabled`.

<Note>Account settings (keys, webhook signing secret, profile) can only be changed from the console, not with an API key.</Note>


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.