API Keys
All API requests require an API key passed in the Authorization header:
API keys are created and managed in your dashboard.
OpenModex API keys follow the format:
omx_ — OpenModex prefix
sk_ — secret key identifier
- Followed by a random alphanumeric string
Usage
Environment Variables
All official SDKs automatically read the OPENMODEX_API_KEY environment variable:
Security Best Practices
Never expose your API key in client-side code, public repositories, or browser requests. API keys carry billing permissions and should be kept secret.
- Use environment variables — never hardcode keys in source code
- Rotate keys regularly — create new keys and revoke old ones from the dashboard
- Use separate keys for development and production
- Set permissions — restrict keys to specific models or rate limits when possible
Error Responses