There was an error while loading. Please reload this page.
The API plugin has a complete guide covering authentication, endpoint formats, secrets and generated OpenAPI documentation:
API secrets must remain in trusted server-side applications; never put them in iframe URLs, public JavaScript, mobile packages or tickets.