Authentication
Every request carries your API key and your seller id.
Katch issues two values to each integration partner:
| Value | Header | Example |
|---|---|---|
| API key | Authorization: apikey <key> | Authorization: apikey sk_live_xxxxxxxx |
| Seller id | x-seller-id: <id> | x-seller-id: YOUR_SELLER_ID |
curl https://graphql.katchkw.com/rest/tasks \
-H "Authorization: apikey $KATCH_API_KEY" \
-H "x-seller-id: $KATCH_SELLER_ID"Keep your key server-side
Your API key can create deliveries charged to your wallet. Never ship it in a mobile app, browser bundle or public repository. If you think a key has leaked, contact Katch to rotate it.
Getting credentials
Contact your Katch account manager. One API key can serve several sellers (for example a platform with many stores); pass the right x-seller-id on each request.