API keys
Every request must include your API key. Each key is scoped to a single organization — all data returned is automatically filtered to that organization. You can send the key in any of these headers (all are equivalent):Getting a key
- Go to Settings → API in the rocketblue app.
- Copy the key shown on the page.
- Keep it secret — treat it like a password.
MCP authentication
Claude custom connectors and ChatGPT custom MCP apps use OAuth instead of an API key. Get the Server URL, OAuth Client ID, and Client Secret from Settings → MCP. In Claude, set authentication to Always required and choose Use your own OAuth client. See Connect an MCP client. Cursor and other header-based MCP clients use the same API key headers as REST.Authentication errors
Rate limiting
API keys have a quota on the number of requests per minute, configurable per organization (default: 120 req/min). When the limit is exceeded the API returns429 Too Many Requests.

