---
deprecated: true
search:
  tags:
    - api-keys
    - POST
seo:
  description: >-
    An API key cannot create keys, so a leaked key cannot outlive its own
    revocation. The org's… Reference for the POST /v1/api-keys endpoint in the
    pols.so API.
sidebar:
  label: Refused; create API keys on the website's account page
  badge: POST
title: Refused; create API keys on the website's account page
type: openapi-operation
---
An API key cannot create keys, so a leaked key cannot outlive its own
revocation. The org's owner creates keys after logging in at
`/account` on the website (https://my.pols.so/account), where they can
also let a key expire. This always answers 403 `forbidden`.

`POST /v1/api-keys`

**Deprecated.**
