Skip to main content

Authentication

AgentLine uses Bearer API keys. Every authenticated request needs:
Keys use the al_live_... prefix. Legacy keys prefixed sk_live_... still work.

Getting a key

Sign-up and sign-in use the same email one-time-code flow:
1

Request a code

2

Verify the code to mint a key

Returns api_key (plaintext, shown once) plus your account_id and balance. New emails auto-create an account with a sign-up credit.
The same email always resolves to the same account — an agent that signs up and a human who later signs in land on the identical account.

Managing keys

You can’t revoke the key currently authenticating a request. Use a second active key, then revoke the old one. Keys are bcrypt-hashed at rest.

Using the key

MCP

MCP clients use the same Bearer key against https://api.agentline.cloud/mcp via mcp-remote. See MCP.