> ## Documentation Index
> Fetch the complete documentation index at: https://docs.base44.com/llms.txt
> Use this file to discover all available pages before exploring further.

> ## Agent Instructions
> Internal links on these pages omit the .md extension. Append .md to a docs page URL, or send an Accept: text/markdown header, to get that page as markdown.

# Authentication

> How to authenticate with the Base44 Superagents API

All Superagents API requests authenticate with a personal access token. Include it as a Bearer token in the `Authorization` header with every request:

```bash theme={null}
Authorization: Bearer YOUR_PERSONAL_ACCESS_TOKEN
```

<Note>
  **What the token needs:**

  * It has to reach the agent, either through **All apps and Superagents** or by choosing this agent under **One app or Superagent**.
  * It needs **Full access** for most endpoints. A **Read-only** token works only with [Get Superagent conversation](/api-reference/get-superagent-conversation).
  * Workspace API keys aren't accepted.
</Note>

A personal access token acts as you, so you see your own conversation and memories with the agent. Managing the agent's webhooks also needs editor access to the agent.

<Warning>
  **Moving from an account API key?**

  Personal access tokens replace account API keys, and from **October 15, 2026** you can no longer use an account API key. Replace the `api_key: YOUR_API_KEY` header with `Authorization: Bearer YOUR_PERSONAL_ACCESS_TOKEN`. See [moving from account API keys](/Workspaces/Personal-access-tokens#moving-from-account-api-keys).
</Warning>

## Get an access token

You can create a token from the agent's developer settings.

**To create a personal access token for your Superagent:**

1. Open your Superagent.
2. Click **Agent Settings** in the sidebar.
3. Click **Developer**.
4. Click **Create access token**, then follow the steps to create a token that can reach this agent.

See [Creating an access token](/Workspaces/Personal-access-tokens#creating-an-access-token) for every option.

<Warning>
  Your personal access token acts as your Base44 account. Treat it like a password, don't share it, and don't commit it to version control.
</Warning>

## Example request

```curl theme={null}
curl --request POST \
  --url https://app.base44.com/api/agents/6820f3a4e7b91d003c45a1f2/conversations \
  --header 'Authorization: Bearer YOUR_PERSONAL_ACCESS_TOKEN' \
  --header 'Content-Type: application/json' \
  --data '{}'
```

<Note>
  This returns your conversation with the agent, creating it the first time you call it. Use its `id` to [send a message](/api-reference/send-superagent-message).
</Note>


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.