# List API keys

> GET /api-keys

Source: https://docs.trykintsugi.com/reference/2026-07-21/list-api-keys

GET /api-keys

List API keys

List API keys. Requires a user credential (an Owner or Admin) or a PORTFOLIO-scope Api-Key. Select an organization with an `Organization-Id` to list that organization's keys (`active` toggles current vs archived); omit it to list a portfolio's keys if you are a portfolio Owner or Admin bearer. Paging is forward-only and offset-backed (the cursor encodes a page number, not a keyset bound): pass `limit` and the opaque `cursor` from a prior response's `nextCursor` to page forward; `hasMore` is false on the last page, and `previousCursor` / `hasPrevious` are always null/false. On a portfolio listing, optional `scope` (`PORTFOLIO` or `ORGANIZATION`) splits the mixed set for dual-table UIs; omit it for every key. A cursor is only valid for the `limit`, `active`, `scope`, and organization or portfolio it was issued under; change any of those and start from the first page.

Category: API Keys

Query parameters:
active (boolean) - For an organization's own keys, list current (`true`, the default) or archived (`false`) keys. A portfolio or client listing has no archived state, so `false` is rejected there rather than ignored.
scope (PublicApiKeyScopeEnum) - On a portfolio listing (no `Organization-Id`), keep only `PORTFOLIO` keys or only `ORGANIZATION` keys (including null-scope legacy keys). Omit for the full mixed set. Rejected on an organization or client listing.
  allowed values: ORGANIZATION, PORTFOLIO
limit (integer) - Maximum number of items to return.
cursor (string) - Opaque cursor from a prior response's nextCursor or previousCursor. Omit for the first page.

Response fields:
items (ApiKey[], required) - API keys on this page.
  id (string, required) - Opaque unique identifier of the API key. Treat as opaque; do not parse.
  scope (PublicApiKeyScopeEnum, required) - Tier the key grants. `ORGANIZATION` acts on one organization (a direct org key, or a portfolio-minted key for one client); `PORTFOLIO` is a portfolio-wide key for the partner APIs. Null for a key whose stored tier is unrecognized: it grants no access and should be revoked.
    allowed values: ORGANIZATION, PORTFOLIO
  organizationId (string, required) - Organization the key acts on for a direct org key, or null for a portfolio-minted key (see `clientOrganizationId`) or a portfolio-wide key.
[truncated, see the reference page]

---

Index of every page: https://docs.trykintsugi.com/llms.txt
