List API keys. Requires a user credential (an Owner or Admin) or a PORTFOLIO-scope Api-Key. Select an organization with an Organization-Id to list that organization's keys (active toggles current vs archived); omit it to list a portfolio's keys if you are a portfolio Owner or Admin bearer. Paging is forward-only and offset-backed (the cursor encodes a page number, not a keyset bound): pass limit and the opaque cursor from a prior response's nextCursor to page forward; hasMore is false on the last page, and previousCursor / hasPrevious are always null/false. On a portfolio listing, optional scope (PORTFOLIO or ORGANIZATION) splits the mixed set for dual-table UIs; omit it for every key. A cursor is only valid for the limit, active, scope, and organization or portfolio it was issued under; change any of those and start from the first page.
Release date, as YYYY-MM-DD. Defaults to 2026-07-21.
Target organization id (Organization-Id selector). Omit to manage portfolio keys as a bearer. Required for a PORTFOLIO-scope Api-Key, which may only manage one client org's keys at a time.
Target connection id; resolves to its organization.
Platform entity id; resolves to a connection's organization.
Optional source to disambiguate an Entity-Id.
Every query parameter below is optional. Combine as many as you need and append them to the endpoint as a query string. The example shows a few to get you started.
/api-keys?active=<active>&scope=<scope>&limit=<limit>For an organization's own keys, list current (true, the default) or archived (false) keys. A portfolio or client listing has no archived state, so false is rejected there rather than ignored.
On a portfolio listing (no Organization-Id), keep only PORTFOLIO keys or only ORGANIZATION keys (including null-scope legacy keys). Omit for the full mixed set. Rejected on an organization or client listing.
ORGANIZATIONPORTFOLIOMaximum number of items to return.
Opaque cursor from a prior response's nextCursor or previousCursor. Omit for the first page.
API keys on this page.
Opaque cursor for the next page, or null on the last page. Echo it as the request cursor to page forward. Pages are not a stable snapshot: if the key set changes while you walk it, a key can shift across a page boundary.
Always null: this family pages forward only.
Whether a next page exists.
Always false: this family pages forward only.
Successful Response
The request was invalid.
Authentication failed or was missing.
The credential is not permitted for this request.
The requested resource was not found.
The request failed validation.
A service this request depends on was unavailable. Retry the request.