Skip to content

Varcio developers

API reference

Every operation an API key can call, and the scope it needs. Keys are issued in the app under Settings → API access (personal) or Organization → Service accounts (automation). Sign in to create one.

Authentication, limits and errors

  • Send the key as a bearer token: Authorization: Bearer fcp_…. It is shown once when issued; only a hash is stored.
  • A key can only call operations its scopes allow, and never more than its owner - a person or a service account - may do.
  • Each key has its own requests-per-minute limit. Over it the API answers 429 with Retry-After.
  • 401 means a missing, expired or revoked key; 403 with api_key.scope_denied means the operation needs another scope (the response names which).
  • The machine-readable document is at /api/v1/developer/openapi.json - generate a client from it, or use the Terraform provider for business mappings, budgets and policies.