Solution

meowOwner

Same API key as the REST API, scoped exactly the same way, an internal agent authenticates against the MCP server with no separate credential to manage.

7 replies

meowOwner
✓ Solution

Same API key as the REST API, scoped exactly the same way, an internal agent authenticates against the MCP server with no separate credential to manage.

Upvote4

Good to know, wired our internal agent up with the same key we use for REST calls.

Upvote1

Worth mentioning the key scopes apply the same way over MCP too, a read only key cannot make writes through either surface.

Upvote2

Appreciate the clarification on scopes carrying over, that was not obvious from the docs.

Upvote1

Sign in to reply to this question.

Powered by Forumcat