Frontal 已上线。阅读公告

Authentication

Authenticate people, applications, and CI jobs without widening access beyond the work they need to perform.

API keys authenticate applications to a workspace. Create a separate key for every integration or CI job, scope it to the smallest set of capabilities it needs, and store it in that environment's secret manager.

People and applications

People sign in with the access assigned to them. Applications use API keys. A key carries scopes; a person's role determines what they can see and approve. Neither should be used as a substitute for the other.

Rotation and incidents

Keys are shown once. Treat a key in source control, a ticket, or a screenshot as exposed: revoke it, create a replacement, update the integration, and confirm its first request succeeds. Keep the request ID from any failed call; it is the fastest way to investigate it.

See Security for the platform access model and API authentication for HTTP requests.

更新于 2026年8月31日

© 2026 Frontal Labs, Inc. 或其关联公司。

我们默认在不使用 Cookie 的情况下统计网站流量。若您接受,我们将跨会话记住您的访问,从而让分析更准确。