> ## Documentation Index
> Fetch the complete documentation index at: https://cerebrium-docs-deepgram-260728.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Create API Key

> Create a new API key for a project.



## OpenAPI

````yaml https://s3.eu-west-1.amazonaws.com/www.cerebrium.ai/openapi_spec.json post /v2/projects/{project_id}/api-keys
openapi: 3.0.0
info:
  title: Cerebrium REST API
  description: >-
    REST API for interacting with Cerebrium. This API is mainly used by the
    Cerebrium CLI client, please run `pip install cerebrium` to install it.
  version: 1.0.0
  license:
    name: Proprietary
    url: https://www.cerebrium.ai/terms-of-service
servers:
  - url: https://rest.cerebrium.ai
security: []
paths:
  /v2/projects/{project_id}/api-keys:
    post:
      tags:
        - API Keys
      summary: Create API Key
      description: Create a new API key for a project.
      operationId: createProjectApiKey
      parameters:
        - name: project_id
          in: path
          required: true
          schema:
            type: string
        - name: name
          in: query
          required: false
          description: Name of the API key (max 50 characters). Defaults to 'API Key'.
          schema:
            type: string
        - name: description
          in: query
          required: false
          description: Description of the API key (max 255 characters).
          schema:
            type: string
        - name: expiresAt
          in: query
          required: false
          description: >-
            Expiration date in YYYY-MM-DD format. Must be in the future. If
            omitted, the key never expires.
          schema:
            type: string
      responses:
        '200':
          description: The created API key, including its secret value.
          content:
            application/json:
              schema:
                properties:
                  apiKey:
                    description: The API key value.
                    type: string
                  createdAt:
                    description: Creation timestamp in RFC 3339 format.
                    type: string
                  description:
                    description: Description of the API key.
                    type: string
                  expiresAt:
                    description: >-
                      Expiration timestamp in RFC 3339 format, or "never" if the
                      key does not expire.
                    type: string
                  id:
                    description: Unique identifier of the API key.
                    type: string
                  name:
                    description: Name of the API key.
                    type: string
                  projectId:
                    description: ID of the project the API key belongs to.
                    type: string
                  source:
                    description: Origin of the API key.
                    type: string
                  status:
                    description: Status of the API key.
                    type: string
                  updatedAt:
                    description: Last update timestamp in RFC 3339 format.
                    type: string
                type: object
        '400':
          description: >-
            Bad request. The request was malformed or contained invalid
            parameters.
          content:
            application/json:
              schema:
                properties:
                  message:
                    description: Human-readable description of the error.
                    type: string
                type: object
        '401':
          description: >-
            Unauthorized. The Authorization header is missing or the token is
            invalid.
          content:
            application/json:
              schema:
                properties:
                  message:
                    description: Human-readable description of the error.
                    type: string
                type: object
      security:
        - BearerAuth: []
components:
  securitySchemes:
    BearerAuth:
      type: http
      scheme: bearer
      description: >-
        Service Account Token authentication. To authenticate API requests:


        1. **Create a Service Account Token:**
           - Go to the [Cerebrium Dashboard](https://dashboard.cerebrium.ai/) and open the **API Keys** page
           - Click **Create Service Account**, name it (e.g., "GitHub Actions CI/CD"), choose an expiry date, and click **Create**
           - **Copy the token** generated for the desired service account

        2. **Use the Token:**
           Include the service account token in the Authorization header of API requests:
           `Authorization: Bearer <your-service-account-token>`

        3. **Best Practices:**
           - Create separate service accounts for different environments (dev, staging, prod)
           - Store tokens securely as secrets in consuming applications or workflows
           - Set appropriate expiry dates and rotate tokens regularly
           - Never commit tokens to source control

        For CI/CD integration examples, see the [CI/CD
        documentation](https://docs.cerebrium.ai/cerebrium/deployments/ci-cd).

````