Identity and access

Self-service personal API tokens

People create their own keys in seconds, and every call is still tied to a named person.

What it is

People create their own API tokens in the portal and bind each one to their personal account or to one of their teams. Every token shows its requests, tokens, errors, spend and top model for the last 30 days.

Why you want it

Developers get a key in seconds without filing a ticket, and every call is still tied to a named person. The 30-day figures make it obvious which old tokens nobody uses and can be revoked.

How it works

  • The secret is a 256-bit random value shown once. Janus stores only its SHA-256 digest and a short prefix for display.
  • A token's team can be changed later without replacing the secret, and recorded usage can optionally move with it.
  • Revocation takes effect at once on the replica that handled it and within 60 seconds on the others.
  • Administrators can see every token and its owner from the People page.

See it on your own network.

The Community edition is free for up to 25 people. The 30-day Business trial unlocks every Business feature.