> ## Documentation Index
> Fetch the complete documentation index at: https://docs.jitra.app/llms.txt
> Use this file to discover all available pages before exploring further.

# Understanding API Authentication

> API authentication proves that a request comes from an authorized client; use the authentication scheme specified by the current Jitra API Reference.

API authentication proves that a request comes from an authorized client; use the authentication scheme specified by the current Jitra API Reference.

## What to Check

* Use only the issued API Key for that client.
* Send it using the header or scheme documented for the endpoint.
* Never include the key in a public URL or log.
* Rotate and revoke credentials when exposure is suspected.
* Treat 401 and 403 as different authentication or authorization failures.

## Current Jitra Workflow

The API Keys page creates credentials; it does not show or change the authentication contract for individual endpoints.

<Frame>
  <img src="https://mintcdn.com/jitra/3yDOW2ZY-cK3xWum/images/knowledge-base/administration/15-new-api-key.png?fit=max&auto=format&n=3yDOW2ZY-cK3xWum&q=85&s=983d8857610add43a373e0b9856b13a9" alt="Understanding API Authentication screen on Jitra staging" width="1280" height="720" data-path="images/knowledge-base/administration/15-new-api-key.png" />
</Frame>

## Reviewing the Result

Confirm the saved or displayed information matches the intended Object, users, period, and Organization workflow.

## If the Issue Continues

Review required fields, access permissions, available data, and Organization limits. Contact an Organization administrator or Jitra support when the required control is unavailable.
