Skip to main content
The Lynx API requires an access token to authenticate requests securely.

Choose a token type

Which token you need depends on who’s calling the API.

Access token

An access token is a security credential used to authenticate API requests. Each request to the Lynx API must include a valid access token in the Authorization header. This access token is also known as an API key or API token, and appears as a User Token in Nayax Core.
Keep your tokens safeIt is important to avoid sharing your secret tokens in public places like GitHub or Bitbucket since it can allow malicious API calls.
Follow these steps in the Nayax Back Office (Nayax Core) to find and copy an access token:
1

Log in to Nayax Core

Use your username and password.
2

Navigate to Account Settings

Click your username in the top right corner, then select Account Settings.
3

Open the Security and Login tab

It’s the second tab, next to Account.
4

Find the User Tokens section

It’s below Your Trusted Devices.
5

Show and copy the token

Click Show Token next to an existing token to reuse it, then copy it for use in API calls. If no token exists yet, click Add Token and select Lynx Token instead.
You now have an access token you can send as a Bearer credential on Lynx API requests.

Use the token in API requests

Include the access token in the Authorization header for each API request:
Replace <YOUR_ACCESS_TOKEN> with your actual token retrieved from Nayax Core.
EnvironmentsThis example uses the QA base URL. See Environments on the Lynx overview page for the full list of base URLs.

See also