> For the complete documentation index, see [llms.txt](https://roqqu-api-services.gitbook.io/ras/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://roqqu-api-services.gitbook.io/ras/authentication.md).

# Authentication

API keys are required as an authentication method with Roqqu APIs. By using your secret API key you authenticate access to the specific API. Without authentication, access to the API is denied.

Secret Keys should be kept confidential and only stored on your own servers. Your account's secret API key can perform any API request to Roqqu without restriction.

You can find your API keys under the API Keys and Webhooks section on the settings page of the RAS console. Choose between the **Test mode** for testing and **Live Mode** for production. Copy the generated key and store it securely.

Once your testing is successful and your integration is working as expected, replace the **Test API Key** with the **Live API Key**. Update your API requests to point to the live endpoints. Ensure all data and configurations are correct before going live with real transactions.

### Authentication Header <a href="#authentication-header" id="authentication-header"></a>

Include your API key in the request header for Live Mode:

```
x-api-key: YOUR_API_KEY
```

Include your API key in the request header for Test Mode:

```
x-staging-api-key: YOUR_API_KEY
```
