Get an API key
An API key authenticates requests to the MaxoPerf Platform API from CI pipelines, scripts, or an AI agent connected over MCP. You create it once in the console and paste it wherever a tool asks for a MaxoPerf credential.
Create a key
Section titled “Create a key”- Open Settings → API keys (
/settings/api-keys). - Click New API key. Give it a name that says what it’s for, such as
ci-nightly-runorclaude-code-agent, so you can tell keys apart later. - Pick an expiry. Choose 1 month, 1 year, or 10 years. Use a short expiry for experiments and a long one for stable CI pipelines.
- Copy the token immediately. The console shows it once, in the form
mpak_<keyId>_<secret>. MaxoPerf never shows the secret again. If you leave the page before you copy it, revoke the key and create a new one.
”Read-only” is a habit, not a setting
Section titled “”Read-only” is a habit, not a setting”MaxoPerf doesn’t offer a read-only key type yet. If an AI agent only needs to inspect dashboards, KPIs, or run history, you get the same safety this way:
- Tell the agent (in its system prompt or skill config) to avoid create/run/delete tool calls.
- Review the agent’s tool-call log before you approve anything destructive (delete run, cancel test, revoke key).
- Rotate the key on a schedule, and watch Last used on the API keys page for calls you didn’t expect.
Use the key
Section titled “Use the key”Pass the key as a bearer token:
curl -H "Authorization: Bearer mpak_your_api_key_here" \ https://api.maxoperf.com/v1/testsAI tools that connect over MCP use the same header. See Connect AI tools for per-client setup, or Install the MaxoPerf skill for the fastest start.
Revoke a key
Section titled “Revoke a key”Open Settings → API keys, find the key by name, and click Revoke. Revocation is immediate. Any tool still using that token gets 401 Unauthorized on its next call.
Where to go next
Section titled “Where to go next”- Connect AI tools: add this key to Claude Code, Cursor, Claude Desktop, or ChatGPT.
- Install the MaxoPerf skill: the fastest way to get an agent running MaxoPerf tests.
- Secrets and environments: keep this key and other credentials out of test files and scripts.