Skip to content
FixedAgent-ready

Authentication docs now match the API

Removed a token generator that called an endpoint which no longer exists, and corrected the authentication guidance it was part of.

The Developers page offered a "generate a token" flow that called an endpoint removed months ago, when sign-in moved to dashboard sessions and the OAuth client credentials grant. It could only fail, and the surrounding documentation described it as if it worked.

  • The dead token generator is gone from the Developers page
  • The API Reference no longer advertises the removed endpoint
  • Authentication guidance now names the real flows: an agent-bound key exchanged at /api/oauth/token, a plain tenant key sent as x-api-key, and a separate exchange for native apps
  • The copyable example on the API Keys page includes the userId parameter the pricing endpoint requires, so it works as pasted
  • A contract test now fails the build if the reference documents an operation no route serves