# Generating User Api Keys with REST API

**URL:** https://meta.discourse.org/t/generating-user-api-keys-with-rest-api/61916
**Category:** Development
**Tags:** rest-api
**Created:** [May 1, 2017, 10:55pm UTC](https://meta.discourse.org/t/generating-user-api-keys-with-rest-api/61916 "2017-05-01T22:55:27Z")
**Posts on this page:** 1
**Showing post:** 4

<div class="post-metadata">

### Author: ![djensen47](https://sea3.discourse-cdn.com/meta/user_avatar/meta.discourse.org/djensen47/32/120547_2.png) [@djensen47](https://meta.discourse.org/u/djensen47)
#### Post date: [November 9, 2017, 6:29am UTC](https://meta.discourse.org/t/generating-user-api-keys-with-rest-api/61916/4 "2017-11-09T06:29:25Z")

</div>

@j.jaffeux That’s not the same “API” that @Umer_Mirza was asking about. I put “API” in quote because it may not exist?

The [User API keys specification](https://meta.discourse.org/t/user-api-keys-specification/48536) RFC talks about the use case of allowing users _themselves_ the ability to request and API key so that a third party developed app may perform actions on their behalf. You would never want to give a third party your site API key because they would have full access.

I would ask this question in [User API keys specification](https://meta.discourse.org/t/user-api-keys-specification/48536) but that topic is closed. Does the API that @sam proposed in that post actually exist or not?

---

_[View the full topic](https://meta.discourse.org/t/generating-user-api-keys-with-rest-api/61916)._
