---
title: Get an API key
description: Returns one API key without the secret.
doc_version: 0.1.0-preview
last_updated: 2026-09-14
---

# Get an API key

`GET /v1/workspaces/{workspaceId}/api-keys/{keyId}`

Returns one API key without the secret. The owner can read a personal key. An admin can read any workspace key.

## Authentication

Send `Authorization: Bearer <SPARK_API_KEY>`. Read the key from the
SPARK_API_KEY environment variable. Never print it.

## Path parameters

- `workspaceId` (string) — The workspace id.
- `keyId` (string) — The API key id.

## Example request

```bash
curl \
  --url "https://api.beta.graphon.ai/v1/workspaces/wspQ7WsH2Np5L/api-keys/keyE5f6G7h8I9" \
  --header "Authorization: Bearer $SPARK_API_KEY"
```

## Example response

```json
{
  "id": "keyE5f6G7h8I9",
  "workspaceId": "wspQ7WsH2Np5L",
  "name": "Local CLI",
  "accessKeyId": "GSK0123456789ABCDE",
  "ownerKind": "user",
  "ownerId": "usrB2c3D4e5F6",
  "role": "viewer",
  "kind": "workspace",
  "bucketScope": {
    "mode": "all"
  },
  "createdAt": "2026-09-14T18:00:00.000Z",
  "lastUsedAt": null,
  "expiresAt": null,
  "revokedAt": null,
  "revision": 1
}
```

## Sitemap

See the full [sitemap](/sitemap.md) for all pages.
