Authentication
Authentication
Coming soon. Details below are indicative and will be confirmed at Early Access onboarding.
Opes Borsa uses API keys. Every request must include your key in the Authorization header. Keys are scoped to your account and carry the permissions you set.
Bearer token: pass your key as Bearer <key> in the Authorization header. Recommended for all server-side calls.
Never client-side: do not embed keys in browser or mobile client code, and never place a key in a URL query string.