Required permission:
- Manage personal access token
The token list
Click your initials in the top right corner, then Access Token. The Personal Access Token page opens.
- New: create a token. The counter on the left shows how many of your 10 tokens you have used, for example 3/10.
- Name: what the token is for. Long names are cut off; hover to see the full name. Hover a row and click the pencil to rename the token, then press Enter.
- Void: when the token stops working. A working token shows the time left, such as 6 months left. An expired token shows Expired on and the date in red. Hover the value to see the exact date and time.
- Delete: remove the token. Any system using it loses access at once. You are asked to confirm, because this can’t be undone.
Create a token
Click New. The Create Personal Token dialog opens.
- Token Name: write what the token is for, for example ERP integration. Each token needs a different name.
- Void: pick the date the token stops working. The earliest date is tomorrow.
- Generate: create the token. It is greyed out until both fields are filled.
Use the token
Give the token to the system that connects to the API. It sends the token with every request in theAuthorization header, as Bearer followed by the token. The token has the same access as your own account, so the system can only do what your role allows.
For the endpoints, click the ? button in the top bar and choose API Documentation.