Skip to main content
All API requests (except /health) require authentication via an API key passed in the x-api-key request header.

Getting Your API Key

1

Navigate to settings

Go to Settings > API Keys in your PG:AI workspace.
2

Generate a key

Click Generate API Key, give it a descriptive name, and select the permission scopes it should have.
3

Copy and store securely

Copy the key immediately — it won’t be shown again. Store it in environment variables or a secrets manager.

Using Your API Key

Include the API key in the x-api-key header on every request:
Never expose your API key in client-side code, public repositories, or browser requests. Always keep it server-side.

Base URL

All API endpoints use the following base URL:

Permissions & Scopes

API keys are scoped with granular permissions. Each endpoint requires a specific permission — requests made with a key that lacks the required scope will receive a 403 Forbidden response. Wildcard scopes are also supported. For example, insights:* grants both insights:read and insights:write.

Rate Limits

API requests are rate-limited based on your plan. If you exceed the limit, the API returns a 429 Too Many Requests response.
If you’re hitting rate limits, consider batching requests or adding short delays between calls.

Error Responses

All error responses follow a consistent structured format. Every error includes a type, a machine-readable code, and a human-readable message. Some errors include a details object with additional context.
All responses (including errors) include an X-Request-Id header you can use when contacting support to identify the specific request.