ℹ️ In short: API Key → Bearer Token → API Requests.
The API Key itself cannot be used directly to call APIs; it is only used to generate the Bearer token.
1. Create an API Key
- Go to API Keys
- Click “Add API Key”
- Copy your Account ID, Client ID, and Client Secret immediately — you’ll need them next.
🔐 Each API key is environment-specific:You can also optionally limit the scopes of an API key to one or more consumers. See Managing API Keys for details.Start creating in sandbox; when going live, create a new key in production.
- A sandbox key → sandbox environment
- A production key → production environment
2. Get a Bearer Token
Use the Create a Token endpoint to obtain your access token:⚠️ This is the only endpoint that doesn’t require authentication.
The token you receive is tied to the same environment as your API key.
3. Use the Token for All Other API Requests
Add the token to every request header:⚠️ All other Chift API calls require this token.
Requests without it will be rejected.
✅ In summary
| Step | Description | Environment |
|---|---|---|
| 1. Create API Key | Defines whether you’re in sandbox or production | Determined by the key |
| 2. Generate Bearer Token | Authenticates your session | Linked to the key’s environment |
| 3. Use Token | Required for all API calls | Same environment |