Authorization header
Send `Authorization: Bearer $TACKLEKEY_API_KEY`, not the raw key alone and not a browser-only token.
A 401 error usually means the request reached the service but the key could not be accepted. Start with one raw request and verify the exact key path.
Send `Authorization: Bearer $TACKLEKEY_API_KEY`, not the raw key alone and not a browser-only token.
Print only whether the variable exists, not the key itself, and restart the process after changing environment values.
Make sure the key belongs to the project and environment you are testing.
Use the TackleKey OpenAI-compatible base URL and avoid mixing provider endpoints in the same client config.
| Step | What to check | Entry |
|---|---|---|
| 1. Copy cURL example | Use a minimal raw request to rule out SDK configuration issues. | Open |
| 2. Check console key | Create a fresh project key if the current one was revoked or exposed. | Open |
| 3. Check logs | Confirm whether the request appears and which key/project it maps to. | Open |
| 4. Re-test with one model | Use a visible model from live pricing and one short prompt. | Open |
No. Keep keys server-side and proxy frontend requests through your own backend when needed.
Only after checking the header, base URL, project scope, and environment variable. If the key may have leaked, revoke it and create a replacement.
The server may not have the same environment variable, may be using an older deployment, or may be calling a different base URL.
Create an account, generate a project API key, then replace your client base URL with the TackleKey endpoint. Keep keys server-side and verify live pricing before scaling traffic.