> ## Documentation Index
> Fetch the complete documentation index at: https://docs.qall.io/llms.txt
> Use this file to discover all available pages before exploring further.

# API keys

> Credentials for calling the Qall API.

An API key lets your own code do what you can do in the dashboard — create
assistants, read calls, start campaigns.

## Creating one

Open **API Keys** and create one. Give it a name that says where it'll be used, so
you can tell them apart later.

<Warning>
  The key is shown **once**, when you create it. Copy it then. We only store a
  hash, so if you lose it, nobody can recover it — you create a new one and delete
  the old.
</Warning>

Use it as a bearer token:

```bash theme={null}
curl https://qall.io/api/assistants \
  -H "Authorization: Bearer qall_your_key_here"
```

See the [API overview](/api-reference/overview) for what you can do with it.

## Looking after them

**One key per thing that uses it.** Separate keys for your production integration
and your test script means you can revoke one without breaking the other.

**Keep them out of your repository.** Use environment variables or your platform's
secret storage.

**Disable rather than delete** while you're working out whether a key is still in
use. Disabling is reversible; deleting isn't.

## Scope

A key acts as the person who created it, in the organisation they were in at the
time. It can reach everything that person can.

If someone leaves, review the keys they made.


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.