Skip to main content

API reference · /api/v1

Authentication

Authenticate every request with your API key ID and secret. Credentials belong on secure server-side systems only.

Headers

X-DomainAf-Key: Your API key ID
X-DomainAf-Secret: Your API secret (shown once when generated)
 Accept: application/json
Content-Type: application/json

Credential lifecycle

  • Generate credentials in the reseller portal after API access is enabled
  • Copy the secret immediately — it is shown once
  • Optionally restrict the credential to allowed IPs
  • Rotate or revoke credentials if they are compromised
  • Never commit secrets to Git or ship them to browsers

Example

curl https://www.domains.af/api/v1/account/balance \
  -H "X-DomainAf-Key: daf_…" \
  -H "X-DomainAf-Secret: …" \
  -H "Accept: application/json"