> ## Documentation Index
> Fetch the complete documentation index at: https://docs.beachdepository.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Authorization

> API keys, the Bearer header, and what happens when a key is disabled or revoked

Create an API key in the dashboard under **Settings > API Keys**. Each key belongs to one organization, so requests do not take an organization id.

## Base URL

```
https://api.beachdepository.com/v1
```

Send the API key as a Bearer token.

```bash theme={null}
curl https://api.beachdepository.com/v1/fbo-accounts \
  -H "Authorization: Bearer ${BEACH_API_KEY}"
```

Keys use the prefix `pv_live_`, then 64 hex characters.

Each key has [permission scopes](/permissions). A request without the required scope returns `403`.

Disable a key to pause it, or revoke it to invalidate it permanently. Disabled and revoked keys return `401`.


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.