🚀 NovaSync API

v… loading… ← Back to dashboard

How to authenticate

Most endpoints require an authenticated dashboard session. The fastest way to try them:

  1. Open /dashboard/login in another tab and sign in.
  2. Copy your session cookie (DevTools → Application → Cookies → look for NS_SESSION).
  3. Click the Authorize button (top-right of the endpoint list) and paste the cookie value into cookieAuth.
  4. Every state-changing call automatically sends X-Dashboard-Token = your session token (fetched from /api/admin/csrf-token on load — double-submit cookie pattern, see SEC-C2 in the changelog).

For programmatic clients you can also use the small X-Api-Key family (Settings → Integrations → API Keys). Per-endpoint required permission keys appear in the response 403 body and as a purple chip in the operation summary.

Loading API spec…