Authentication
All requests require a Bearer token in the Authorization header.
All API requests require a valid API key passed as a Bearer token in the Authorization header. Keys are issued after pilot onboarding.
Test keys
Rate-limited, synthetic-calibrated scores only — for development and integration testing.
Live keys
Issued after pilot calibration. Full rate limits and production SLAs apply.
Enterprise
Custom deployment on a dedicated cluster, for institutions with data-residency requirements. See Self-hosting.