Skip to main content
All API requests are authenticated with an API-KEY header. You can try the API without a key using the sandbox; unauthenticated requests are rate limited to 5 requests per minute and automatically use a public sandbox account.
Keep your API key secret. Never expose it in client-side code; always call the API from your backend.