> ## Documentation Index
> Fetch the complete documentation index at: https://docs.nvisy.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Create API token

> Creates a new API token. The JWT token is only shown once upon creation.



## OpenAPI

````yaml /api-reference/openapi.json post /api-tokens/
openapi: 3.1.0
info:
  title: Nvisy API
  summary: Document processing and annotation platform
  description: >-
    Nvisy provides intelligent document processing, annotation, and analysis
    capabilities. This API enables document upload, OCR processing, embedding
    generation, and semantic search across your document collections.
  termsOfService: https://nvisy.com/legal/terms-of-service
  contact:
    name: Nvisy Support
    url: https://nvisy.com
    email: hello@nvisy.com
  license:
    name: Proprietary
    url: https://nvisy.com/license
  version: 0.1.0
servers: []
security: []
tags:
  - name: Accounts
    description: Account management and profile operations
  - name: Authentication
    description: Login, signup, and token management
  - name: Workspaces
    description: Workspace creation and management
  - name: Files
    description: File upload, download, and management
  - name: Members
    description: Workspace member management
  - name: Invites
    description: Workspace invitation handling
  - name: API Tokens
    description: API token management
  - name: Connections
    description: External provider connections
  - name: Pipelines
    description: Redaction pipeline configuration
  - name: Pipeline Runs
    description: Pipeline run execution and review
  - name: Policies
    description: Redaction policy configuration
  - name: Webhooks
    description: Webhook configuration
  - name: Notifications
    description: Account notification management
  - name: Health
    description: Service health checks
paths:
  /api-tokens/:
    post:
      tags:
        - API Tokens
      summary: Create API token
      description: Creates a new API token. The JWT token is only shown once upon creation.
      requestBody:
        description: Request to create a new API token.
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/CreateApiToken'
        required: true
      responses:
        '201':
          description: API token with JWT token string (only returned on creation).
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ApiTokenWithJWT'
        '400':
          description: >-
            HTTP error response representation with security-conscious design.


            This struct contains all the information needed to serialize an
            error

            response, including the error name, message, HTTP status code,
            resource

            information, and user-friendly messages.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ErrorResponse'
        '401':
          description: >-
            HTTP error response representation with security-conscious design.


            This struct contains all the information needed to serialize an
            error

            response, including the error name, message, HTTP status code,
            resource

            information, and user-friendly messages.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ErrorResponse'
        '415':
          description: 'Expected request with `Content-Type: application/json`'
          content:
            text/plain:
              schema:
                type: string
        '422':
          description: Failed to deserialize the JSON body into the target type
          content:
            text/plain:
              schema:
                type: string
      security:
        - BearerAuth: []
components:
  schemas:
    CreateApiToken:
      description: Request to create a new API token.
      type: object
      properties:
        displayName:
          description: Human-readable display name for the API token (1-100 characters).
          type: string
          maxLength: 100
          minLength: 1
        expiresIn:
          description: When the token expires.
          allOf:
            - $ref: '#/components/schemas/TokenExpiration'
      required:
        - displayName
        - expiresIn
    ApiTokenWithJWT:
      description: API token with JWT token string (only returned on creation).
      type: object
      properties:
        displayName:
          description: Human-readable display name for the API token.
          type: string
        expiredAt:
          description: Timestamp when the token expires (omitted = never expires).
          type: string
          format: date-time
        id:
          description: Unique identifier for the token.
          type: string
          format: uuid
        issuedAt:
          description: Timestamp of token creation.
          type: string
          format: date-time
        sessionType:
          description: Type of token (web, mobile, api, etc.).
          allOf:
            - $ref: '#/components/schemas/ApiTokenType'
        token:
          description: The JWT token string (only shown once on creation).
          type: string
      required:
        - id
        - displayName
        - sessionType
        - issuedAt
        - token
    ErrorResponse:
      description: |-
        HTTP error response representation with security-conscious design.

        This struct contains all the information needed to serialize an error
        response, including the error name, message, HTTP status code, resource
        information, and user-friendly messages.
      type: object
      properties:
        message:
          description: User-friendly error message safe for client display
          type: string
        name:
          description: The error name/type identifier
          type: string
        resource:
          description: The resource that the error relates to (optional, set by handler)
          type: string
        suggestion:
          description: Helpful suggestion for resolving the error (optional)
          type: string
        validation:
          description: Validation error details for field-specific errors
          type: array
          items:
            $ref: '#/components/schemas/ValidationErrorDetail'
      required:
        - name
        - message
    TokenExpiration:
      description: Expiration options for API tokens.
      oneOf:
        - description: Token never expires.
          type: string
          const: never
        - description: Expires in 7 days.
          type: string
          const: in7Days
        - description: Expires in 30 days.
          type: string
          const: in30Days
        - description: Expires in 90 days.
          type: string
          const: in90Days
        - description: Expires in 1 year.
          type: string
          const: in1Year
    ApiTokenType:
      description: >-
        Defines the type of API token for authentication and tracking purposes.


        This enumeration corresponds to the `API_TOKEN_TYPE` PostgreSQL enum and
        is used

        to categorize different types of authentication tokens based on the
        client type.
      oneOf:
        - description: Web browser token (desktop or mobile browser)
          type: string
          const: web
        - description: API client token (programmatic access)
          type: string
          const: api
        - description: CLI tool token (command-line interface)
          type: string
          const: cli
    ValidationErrorDetail:
      description: Validation error details for field-specific errors.
      type: object
      properties:
        code:
          description: Error code for the validation failure
          type: string
        field:
          description: Field name that failed validation
          type: string
        message:
          description: Human-readable error message
          type: string
        params:
          description: Additional parameters related to the validation error
          type: object
          additionalProperties: true
      required:
        - field
        - code
        - message

````