Authentication
Create a token under Settings → API tokens (owner only). Send:
Authorization: Bearer gm_...
Content-Type: application/json- Missing or invalid token →
401 {"message":"Unauthorized"} - Deleting the token invalidates it immediately.
last_used_atupdates on use - Limit: 120 requests per minute per IP →
429