Manuals / API Basics for Non-Developers / Chapter 2

Build · beginner · ~35 min · Chapter 2 of 3

Auth & status codes

API keys and tokens prove who you are. Status codes tell what happened.

Path progress
67%

Step 1 of 1

Keys are passwords

Never paste keys in public Slack or screenshots. Rotate if leaked.

Keys are passwordsDrag stickies · tap for tips
Study mapDrag stickies · tap for tipsKeep it shortdrag · tap →Name the waitdrag · tap →Scope locatorsdrag · tap →Trace when stuckdrag · tap →One browser firstdrag · tap →Isolate statedrag · tap →Assert the UIdrag · tap →Retry wiselydrag · tap →Seed datadrag · tap →Close the loopdrag · tap →Keep it shortdrag · tap →Name the waitdrag · tap →Scope locatorsdrag · tap →Trace when stuckdrag · tap →One browser firstdrag · tap →Isolate statedrag · tap →Pathwise hackdrag · tap →Keys are passwordsdrag · tap →Try thisdrag · tap →Follow the dashed drag · tap →

Do this now

Call a public demo API from Postman/Insomnia/Bruno.

Pro tip: 401 = who are you? 403 = I know you, but no. 404 = missing. 429 = slow down. 5xx = their problem.

Was this step clear?
Chapter learning outcomes
  • Auth
  • Status

Clear these before you leave